roles/freeradius: Set dhparam permissions

The `dhparam` file used by FreeRadius needs to be readable by the
*radiusd* group.
jenkins-master
Dustin 2019-09-19 19:22:17 -05:00
parent 2914bdb73c
commit a1c90272b5
1 changed files with 6 additions and 0 deletions

View File

@ -70,6 +70,12 @@
command: command:
openssl dhparam -out /etc/raddb/certs/dhparam {{ radiusd_dhparm_size }} openssl dhparam -out /etc/raddb/certs/dhparam {{ radiusd_dhparm_size }}
creates=/etc/raddb/certs/dhparam creates=/etc/raddb/certs/dhparam
- name: ensure dh parameters file permissions are correct
file:
path=/etc/raddb/certs/dhparam
mode=0640
owner=root
group=radiusd
- name: ensure example certificates are removed - name: ensure example certificates are removed
command: command:
rm -vf rm -vf