tmeneau
63ad14efb1
Fix invalid require_in sshd_config for key states
Change the require_ins used by the key management states in the
config.sls to be conditional based on whether the sshd_config
is managed by the formula
Fixes #130
6 jaren geleden
Raphaël Hertzog
6ccb9fc87d
Replace deprecated "user" attribute by "runas"
6 jaren geleden
Andres Montalban
26f2fc8e97
[FIX] When key is present override generating by any way
7 jaren geleden
Alexander Weidinger
7afea021c6
Fixed key generation
- generate before running check_mk on the sshd_config
- set permissions on private key
- cope with empty keys
7 jaren geleden
Andres Montalban
c7a97ae72f
Create needed directory for UsePrivilegeSeparation option
7 jaren geleden
Alexander Weidinger
c71f2ae4fa
minor fix: use keyFile in config.sls
7 jaren geleden
Alexander Weidinger
162705c7ce
Test config before applying it
7 jaren geleden
Alexander Weidinger
6b23b28f52
Opt-in to enforce RSA key length
7 jaren geleden
ek9
038a51cdc8
manage sshd_config and ssh_config only if pillars are defined
7 jaren geleden
Adam Mendlik
613bea2cac
Add variables for file owner and mode
7 jaren geleden
Bogdan Radulescu
13cf374efe
Added configuration options for ssh_config
Made a small change to reflect the default sshd_config
9 jaren geleden
elfixit
18ba94d0fc
add options to give a key size to generate_key
9 jaren geleden
Niels Abspoel
2a68ccac1a
Add option to remove ssh_host_keys
9 jaren geleden
Franz Pletz
5d0f69ad2c
Cleanups for host key pillar example
10 jaren geleden
Franz Pletz
33f21a0976
Add support for ED25519 host keys
10 jaren geleden
Alan Pearce
6fb57f40bc
Config: Add support for generating keys
10 jaren geleden
Alan Pearce
73eaef4ea0
Config: Add support for ECDSA host keys
10 jaren geleden
Alan Pearce
ce46343562
Config: Refactor host key provisioning into loop
10 jaren geleden
Alan Pearce
2876a691b0
Remove reference to root group
By not specifying it, root user's group should be used.
10 jaren geleden
Seth House
b44c26cd13
Moved the rsa/dsa key management to config.sls
10 jaren geleden
Kenny Do
9f70270643
explicitly set the user, group, and mode to match the package's
sshd_config
11 jaren geleden
Kenny Do
dc53d0c295
fixed the name of the service that the openssh config is watched by
11 jaren geleden
Kenny Do
07771c0ebf
Split the sshd_config and banner components into sub-states
11 jaren geleden