Commit 5a9e8594 authored by Lars Beckers's avatar Lars Beckers
Browse files

ad-auth: do not deploy mkhomedir on clients

parent cab25b66
# file: roles/ad-auth/tasks/pam.yml
- name: ensure our pam-configs are deployed
copy: src=pam/{{ item }} dest=/usr/share/pam-configs/{{ item }} owner=root group=root mode=0644
- mkhomedir
- umask
- name: ensure pam applies a general umask
copy: src=pam/umask dest=/usr/share/pam-configs/umask owner=root group=root mode=0644
- regenerate pam config
- pam
- config
- name: ensure pam creates a home dir if necessary
copy: src=pam/mkhomedir dest=/usr/share/pam-configs/mkhomedir owner=root group=root mode=0644
when: "'clients' not in group_names"
- regenerate pam config
Supports Markdown
0% or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment