|
Packit Service |
a166ed |
---
|
|
Packit Service |
a166ed |
- name: find trust
|
|
Packit Service |
a166ed |
hosts: ipaserver
|
|
Packit Service |
a166ed |
become: true
|
|
Packit Service |
a166ed |
gather_facts: false
|
|
Packit Service |
a166ed |
|
|
Packit Service |
a166ed |
tasks:
|
|
Packit Service |
a166ed |
|
|
Packit Service |
a166ed |
- include_tasks: ../env_freeipa_facts.yml
|
|
Packit Service |
a166ed |
|
|
Packit Service |
a166ed |
- block:
|
|
Packit Service |
a166ed |
|
|
Packit Service |
a166ed |
- name: Add nonposix group.
|
|
Packit Service |
a166ed |
ipagroup:
|
|
Packit Service |
a166ed |
ipaadmin_password: SomeADMINpassword
|
|
Packit Service |
a166ed |
name: extgroup
|
|
Packit Service |
a166ed |
nonposix: yes
|
|
Packit Service |
a166ed |
register: result
|
|
Packit Service |
a166ed |
failed_when: result.failed or not result.changed
|
|
Packit Service |
a166ed |
|
|
Packit Service |
a166ed |
- name: Set group to be external
|
|
Packit Service |
a166ed |
ipagroup:
|
|
Packit Service |
a166ed |
ipaadmin_password: SomeADMINpassword
|
|
Packit Service |
a166ed |
name: extgroup
|
|
Packit Service |
a166ed |
external: yes
|
|
Packit Service |
a166ed |
register: result
|
|
Packit Service |
a166ed |
failed_when: result.failed or not result.changed
|
|
Packit Service |
a166ed |
|
|
Packit Service |
a166ed |
- name: Add AD users to group
|
|
Packit Service |
a166ed |
ipagroup:
|
|
Packit Service |
a166ed |
ipaadmin_password: SomeADMINpassword
|
|
Packit Service |
a166ed |
name: extgroup
|
|
Packit Service |
a166ed |
external_member: "AD\\Domain Users"
|
|
Packit Service |
a166ed |
register: result
|
|
Packit Service |
a166ed |
failed_when: result.failed or not result.changed
|
|
Packit Service |
a166ed |
|
|
Packit Service |
a166ed |
- name: Add AD users to group, again
|
|
Packit Service |
a166ed |
ipagroup:
|
|
Packit Service |
a166ed |
ipaadmin_password: SomeADMINpassword
|
|
Packit Service |
a166ed |
name: extgroup
|
|
Packit Service |
a166ed |
external_member: "AD\\Domain Users"
|
|
Packit Service |
a166ed |
register: result
|
|
Packit Service |
a166ed |
failed_when: result.failed or result.changed
|
|
Packit Service |
a166ed |
|
|
Packit Service |
a166ed |
- name: Remove external group
|
|
Packit Service |
a166ed |
ipagroup:
|
|
Packit Service |
a166ed |
ipaadmin_password: SomeADMINpassword
|
|
Packit Service |
a166ed |
name: extgroup
|
|
Packit Service |
a166ed |
state: absent
|
|
Packit Service |
a166ed |
register: result
|
|
Packit Service |
a166ed |
failed_when: result.failed or not result.changed
|
|
Packit Service |
a166ed |
|
|
Packit Service |
a166ed |
- name: Add nonposix, external group, with AD users.
|
|
Packit Service |
a166ed |
ipagroup:
|
|
Packit Service |
a166ed |
ipaadmin_password: SomeADMINpassword
|
|
Packit Service |
a166ed |
name: extgroup
|
|
Packit Service |
a166ed |
nonposix: yes
|
|
Packit Service |
a166ed |
external: yes
|
|
Packit Service |
a166ed |
external_member: "AD\\Domain Users"
|
|
Packit Service |
a166ed |
register: result
|
|
Packit Service |
a166ed |
failed_when: result.failed or not result.changed
|
|
Packit Service |
a166ed |
|
|
Packit Service |
a166ed |
- name: Add nonposix, external group, with AD users, again.
|
|
Packit Service |
a166ed |
ipagroup:
|
|
Packit Service |
a166ed |
ipaadmin_password: SomeADMINpassword
|
|
Packit Service |
a166ed |
name: extgroup
|
|
Packit Service |
a166ed |
nonposix: yes
|
|
Packit Service |
a166ed |
external: yes
|
|
Packit Service |
a166ed |
external_member: "AD\\Domain Users"
|
|
Packit Service |
a166ed |
register: result
|
|
Packit Service |
a166ed |
failed_when: result.failed or result.changed
|
|
Packit Service |
a166ed |
|
|
Packit Service |
a166ed |
- name: Remove group
|
|
Packit Service |
a166ed |
ipagroup:
|
|
Packit Service |
a166ed |
ipaadmin_password: SomeADMINpassword
|
|
Packit Service |
a166ed |
name: extgroup
|
|
Packit Service |
a166ed |
state: absent
|
|
Packit Service |
a166ed |
register: result
|
|
Packit Service |
a166ed |
failed_when: result.failed or not result.changed
|
|
Packit Service |
a166ed |
|
|
Packit Service |
a166ed |
- name: Add nonposix group.
|
|
Packit Service |
a166ed |
ipagroup:
|
|
Packit Service |
a166ed |
ipaadmin_password: SomeADMINpassword
|
|
Packit Service |
a166ed |
name: extgroup
|
|
Packit Service |
a166ed |
nonposix: yes
|
|
Packit Service |
a166ed |
register: result
|
|
Packit Service |
a166ed |
failed_when: result.failed or not result.changed
|
|
Packit Service |
a166ed |
|
|
Packit Service |
a166ed |
- name: Set group to be external, and add users.
|
|
Packit Service |
a166ed |
ipagroup:
|
|
Packit Service |
a166ed |
ipaadmin_password: SomeADMINpassword
|
|
Packit Service |
a166ed |
name: extgroup
|
|
Packit Service |
a166ed |
external: yes
|
|
Packit Service |
a166ed |
external_member: "AD\\Domain Users"
|
|
Packit Service |
a166ed |
register: result
|
|
Packit Service |
a166ed |
failed_when: result.failed or not result.changed
|
|
Packit Service |
a166ed |
|
|
Packit Service |
a166ed |
- name: Set group to be external, and add users, again.
|
|
Packit Service |
a166ed |
ipagroup:
|
|
Packit Service |
a166ed |
ipaadmin_password: SomeADMINpassword
|
|
Packit Service |
a166ed |
name: extgroup
|
|
Packit Service |
a166ed |
external: yes
|
|
Packit Service |
a166ed |
external_member: "AD\\Domain Users"
|
|
Packit Service |
a166ed |
register: result
|
|
Packit Service |
a166ed |
failed_when: result.failed or result.changed
|
|
Packit Service |
a166ed |
|
|
Packit Service |
a166ed |
- name: Cleanup environment.
|
|
Packit Service |
a166ed |
ipagroup:
|
|
Packit Service |
a166ed |
ipaadmin_password: SomeADMINpassword
|
|
Packit Service |
a166ed |
name: extgroup
|
|
Packit Service |
a166ed |
state: absent
|
|
Packit Service |
a166ed |
|
|
Packit Service |
a166ed |
when: trust_test_is_supported | default(false)
|