Parent Directory
|
Revision Log
Links to HEAD: | (view) (download) (as text) (annotate) |
Sticky Revision: |
PUSP pilot should hang on aai-dev, not aai production.
Update for new code-base incl. signing Update ansible scripts for id_token signing and sync with other DS installations such as egi onlineCA, novalocal and RCauth.
Syncing more or less with online CA
bring in sync with the novalocal-test-delegserver - improved claim release - fixed PUSP scenario for EGI
change the way hostname is extracted and refereced from ansible_fqdn to a more appropriate inventory_hostname
Remove unneeded ansible_fqdn settings, update hostcred filenames
Update name and description for the services.
Update Shibboleth metadata (templates) for OnlineCA and PUSP CA.
Update metadata for SP (/Shibboleth.sso/Metadata) mainly for requested attributes.
Fix typo in PUSP DN and fix missed CA->Robot in simple CA setup.
Update for robotCA instead of onlineCA, i.e. using robot cert instead of real CA cert: - cafrontend_env.yml: remove unused myproxy_ca_cn and add robot_tarball - delegserver_env.yml: update hostname - update egi: update hostname - roles/cafrontend/handlers/main.yml: add restart myproxy server handler - fix some typos - copy hostcert/key using a new task hostcreds.yml - adapt myproxy.yml to rerun when the serial does not exist (the cacert is extracted from the robots tarball) - add gpg key for shibboleth repo and install using a copy task (see repos.yml) - don't create repos using 'yumrepo' from ansible extras (very unstable) but use a simple template: security_shibboleth.repo.j2 and eugridpma.repo.j2 - don't use IGTF repositories (util) and IGTF repositories (lcg) - replace robot task with extracting the tarball - update simple_ca_setup.sh.j2 for using robot cert instead of cacert. - update README for egi instead of Nikhef - update typo in ansible.cfg
- Remove unused kickstart file - Clone OnlineCA for robot CA (will need updating)
changed robot cert to tarball
switched symlinked wars to their real part made impovment for other bits too
Clone AARC/Elixir/RCAuth setup for EGI pilot
added some shib metadata info
fixed some minor issues, and added support for password generation on the fly
Ansible deployment scripts for DS
This form allows you to request diffs between any two revisions of this file. For each of the two "sides" of the diff, enter a numeric revision.
grid.support@nikhef.nl | ViewVC Help |
Powered by ViewVC 1.1.28 |