Browse Source

ldap: full import

main
Dustin Frisch 5 days ago
parent
commit
95b9bcaace
No known key found for this signature in database GPG Key ID: B4C3BF012D9B26BE
  1. 3
      machines/ldap/ldap.nix
  2. 6
      machines/ldap/secrets/ldap.yaml

3
machines/ldap/ldap.nix

@ -82,6 +82,9 @@ in
olcRootDN = "cn=root,${baseDN}"; olcRootDN = "cn=root,${baseDN}";
olcRootPW.path = config.sops.secrets."ldap/root/password".path; olcRootPW.path = config.sops.secrets."ldap/root/password".path;
# Increase max DB size to fit all the users
olcDbMaxSize = "10737418240";
olcAccess = [ olcAccess = [
# Custom access rules for userPassword attributes # Custom access rules for userPassword attributes
''{0}to attrs=userPassword ''{0}to attrs=userPassword

6
machines/ldap/secrets/ldap.yaml

@ -4,7 +4,7 @@ ldap:
password: ENC[AES256_GCM,data:3np5tR14nxbZe0hlX0Wd4/kDNRb3z3y3z13SyqTY3wE=,iv:yXz45Tsfof0U2JljSRxuUICRjNZ1U3YD4IlXsU4E0/o=,tag:XABl21e6uaj96ApLcRMSpA==,type:str] password: ENC[AES256_GCM,data:3np5tR14nxbZe0hlX0Wd4/kDNRb3z3y3z13SyqTY3wE=,iv:yXz45Tsfof0U2JljSRxuUICRjNZ1U3YD4IlXsU4E0/o=,tag:XABl21e6uaj96ApLcRMSpA==,type:str]
upstream: ENC[AES256_GCM,data:KT6x/jm+p9+3e69yWE/hUMWlNrVuecUK3TcnRdqOJWA=,iv:n5P8NE7xUkOz68g/OcemnpZdEjT8aSEgzC4AS0kyStc=,tag:r+gEb4DIzdyBAsavBucvFQ==,type:str] upstream: ENC[AES256_GCM,data:KT6x/jm+p9+3e69yWE/hUMWlNrVuecUK3TcnRdqOJWA=,iv:n5P8NE7xUkOz68g/OcemnpZdEjT8aSEgzC4AS0kyStc=,tag:r+gEb4DIzdyBAsavBucvFQ==,type:str]
sync: sync:
config: ENC[AES256_GCM,data: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,iv:uX/5gv+bQEKXZPVJDXiBajaWasxmh/mZZq66UNaKe3Q=,tag:kvAZYD+kqcWtc/Oo+ym20g==,type:str]
config: ENC[AES256_GCM,data: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,iv:6QCsqNORpHx/Rp8C25tGE2Uk5KD/LfjooQUqghTuwEs=,tag:XyYnzRdkEiKssIISe7EM7w==,type:str]
sops: sops:
kms: [] kms: []
gcp_kms: [] gcp_kms: []
@ -29,8 +29,8 @@ sops:
TWgzM3hGUFJPMWVHL3FqNzB4MWNTcU0KBu1/Cj3EeXrUajcFfZCZgOytHDuJv2fI TWgzM3hGUFJPMWVHL3FqNzB4MWNTcU0KBu1/Cj3EeXrUajcFfZCZgOytHDuJv2fI
Oth9Mc+jRhKqvDBsc+qcDGzQQaBljkdLrvACM+uFua+hsNgPqxolCw== Oth9Mc+jRhKqvDBsc+qcDGzQQaBljkdLrvACM+uFua+hsNgPqxolCw==
-----END AGE ENCRYPTED FILE----- -----END AGE ENCRYPTED FILE-----
lastmodified: "2024-10-23T15:39:50Z"
mac: ENC[AES256_GCM,data:x2XnbLAAWuCudb9C71I11Hmigh8sQE6lsy4YM5qg2IYRBrOnh+90MblMNAqlj5PX5/c2qg9wlRRpkCTtjcSDtur8j0dnbwQ1gg1AcwB0SWoG0QI1ynFZOJ/aCDeqcRK52AdSkrgz/wRSN2WpPX4O+hNvDRVASIyhumZQb6rrHRU=,iv:uBGxIZdwyGebtNCkpvLlVG1Wg1DdL00rJFxZjbbCV50=,tag:pg41so3tG+no/JaDA/SJMg==,type:str]
lastmodified: "2024-11-19T08:38:11Z"
mac: ENC[AES256_GCM,data:X3iZ1tNXOdPYaYyDO456fKz+trAqLhu2RNiPKmq8+bQZ8eVZyFDznw0n3w47nM03XQpAnpZE0pigZEdCnLU9bMdDvcbpzkvUyWXQ2e8FYIQOW+WonXRVonf4d3MNA0L31UjLxtdc4R0duV9cPIngbWWVdhAcvlI9wpZvUvOI86M=,iv:hPEHln5zo+pXia8xRO1Wrkxhy1VDapHdLOClgABMJ5s=,tag:6OGKwlSCw496xlQ8nyUgSw==,type:str]
pgp: [] pgp: []
unencrypted_suffix: _unencrypted unencrypted_suffix: _unencrypted
version: 3.9.1 version: 3.9.1
Loading…
Cancel
Save