Files
configpolicy/group_vars/grafana/main.yml
Dustin C. Hatch 6c68126a3a grafana: Update LDAP server host name
*dc0.p.b* has been gone for a while now.  All the current domain
controllers use LDAPS certificates signed by Let's Encrypt and include
the *pyrocufflink.blue* name, so we can now use the apex domain A record
to connect to the directory.
2023-04-12 14:07:51 -05:00

21 lines
663 B
YAML

nginx_redirect_http_https: true
grafana_domain: grafana.pyrocufflink.blue
grafana_anonymous_enabled: true
grafana_ldap_enabled: true
grafana_http_addr: '[::1]'
grafana_ldap_host: pyrocufflink.blue
grafana_ldap_ssl: true
grafana_ldap_start_tls: true
grafana_ldap_bind_dn: CN=svc.grafana,CN=Users,DC=pyrocufflink,DC=blue
grafana_ldap_search_filter: (sAMAccountName=%s)
grafana_ldap_search_base_dns:
- DC=pyrocufflink,DC=blue
grafana_ldap_attr_username: sAMAccountName
grafana_ldap_attr_email: mail
grafana_ldap_group_mappings:
- group_dn: CN=Grafana Admins,CN=Users,DC=pyrocufflink,DC=blue
org_role: Admin
grafana_admin: true
- group_dn: '*'
org_role: Viewer