roles/freeradius: Set dhparam permissions
The `dhparam` file used by FreeRadius needs to be readable by the *radiusd* group.
This commit is contained in:
@@ -70,6 +70,12 @@
|
|||||||
command:
|
command:
|
||||||
openssl dhparam -out /etc/raddb/certs/dhparam {{ radiusd_dhparm_size }}
|
openssl dhparam -out /etc/raddb/certs/dhparam {{ radiusd_dhparm_size }}
|
||||||
creates=/etc/raddb/certs/dhparam
|
creates=/etc/raddb/certs/dhparam
|
||||||
|
- name: ensure dh parameters file permissions are correct
|
||||||
|
file:
|
||||||
|
path=/etc/raddb/certs/dhparam
|
||||||
|
mode=0640
|
||||||
|
owner=root
|
||||||
|
group=radiusd
|
||||||
- name: ensure example certificates are removed
|
- name: ensure example certificates are removed
|
||||||
command:
|
command:
|
||||||
rm -vf
|
rm -vf
|
||||||
|
|||||||
Reference in New Issue
Block a user