Commit 5a9e8594 authored by Lars Beckers's avatar Lars Beckers

ad-auth: do not deploy mkhomedir on clients

parent cab25b66
---
# file: roles/ad-auth/tasks/pam.yml
- name: ensure our pam-configs are deployed
copy: src=pam/{{ item }} dest=/usr/share/pam-configs/{{ item }} owner=root group=root mode=0644
with_items:
- mkhomedir
- umask
- name: ensure pam applies a general umask
copy: src=pam/umask dest=/usr/share/pam-configs/umask owner=root group=root mode=0644
notify:
- regenerate pam config
tags:
- pam
- config
- name: ensure pam creates a home dir if necessary
copy: src=pam/mkhomedir dest=/usr/share/pam-configs/mkhomedir owner=root group=root mode=0644
when: "'clients' not in group_names"
notify:
- regenerate pam config
tags:
......
Markdown is supported
0%
or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment