1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677 |
- ---
- - name: Include common vars
- include_vars: ../../login_common/vars/main.yml
- - name: Fetch hostname
- command: hostname
- register: new_serv_hostname
- changed_when: false
- - name: Set fact for server hostname
- set_fact:
- server_hostname: "{{ new_serv_hostname.stdout }}"
- - name: Uninstall server if it is already installed
- command: ipa-server-install --uninstall -U
- changed_when: false
- failed_when: false
- - block:
- - name: Install ipa server in CentOS 7.9
- command: >-
- ipa-server-install -n '{{ hostvars['127.0.0.1']['domain_name'] }}' --hostname='{{ server_hostname }}' -a '{{ hostvars['127.0.0.1']['kerberos_admin_password'] }}'
- -p '{{ hostvars['127.0.0.1']['directory_manager_password'] }}' -r '{{ hostvars['127.0.0.1']['realm_name'] }}' --setup-dns --auto-forwarders --auto-reverse -U
- changed_when: true
- no_log: true
- register: install_ipa_server
- when:
- - ( ansible_distribution | lower == os_centos )
- - ( ansible_distribution_version < os_version )
- - name: Install ipa server in CentOS > 8 or Rocky 8
- command: >-
- ipa-server-install -n '{{ hostvars['127.0.0.1']['domain_name'] }}' --hostname='{{ server_hostname }}' -a '{{ hostvars['127.0.0.1']['kerberos_admin_password'] }}'
- -p '{{ hostvars['127.0.0.1']['directory_manager_password'] }}' -r '{{ hostvars['127.0.0.1']['realm_name'] }}' --setup-dns --no-forwarders --no-reverse --no-ntp -U
- changed_when: true
- no_log: true
- register: install_ipa_server
- when:
- - ( ansible_distribution | lower == os_centos ) or
- ( ansible_distribution | lower == os_rocky )
- - ( ansible_distribution_version >= os_version )
- rescue:
- - name: Install ipa server failed
- fail:
- msg: "Error: {{ install_ipa_server.stderr_lines }}"
- - block:
- - name: Authenticate as admin
- shell: set -o pipefail && echo $'{{ hostvars['127.0.0.1']['kerberos_admin_password'] }}' | kinit admin
- no_log: true
- changed_when: false
- register: authenticate_admin
- rescue:
- - name: Authenticate as admin failed
- fail:
- msg: "Error: {{ authenticate_admin.stderr }}"
- - name: Replace the /etc/resolv.conf file
- copy:
- src: "{{ temp_resolv_conf_path }}"
- dest: "{{ resolv_conf_path }}"
- mode: "{{ file_mode }}"
- remote_src: yes
|