Files @ 17cf34f73ca6
Branch filter:

Location: majic-ansible-roles/roles/backup_client/defaults/main.yml - annotation

branko
MAR-28: Implemented additional tests for mail_server role:

- Deploy a number of tools on clients in order to test SMTP, IMAP, and Sieve
services.
- Added one more user to LDAP directory for testing group restrictions.
- Deploy CA certificate on all testing machines for TLS validation purposes.
- Use different custom-configured cipher for mail server ciphers.
- Fixed invalid postmaster address for parameters-optional host.
- Deploy configuration files for use with Imap-CLI on client test machines.
- Updated testing of SMTP server to include checks for users that do not belong
to mail group.
- Extended some SMTP-related tests to cover both test servers.
- Some small fixes in SMTP-related tests for expected output from commands.
- Implemented tests covering Dovecot (IMAP + Sieve) functionality.
- Implemented tests for running/enabled services.
- Implemented tests for ClamAV.
- Implemented tests for firewall and connectivity.
- Implemented tests for Postfix TLS configuration.
- TODO: Tests for Sieve TLS configuration have not been written yet due to
limitation of available tools.
---

backup_additional_encryption_keys: []
backup_client_username: "bak-{{ ansible_fqdn | replace('.', '_') }}"
backup_server_destination: /duplicity
backup_server_port: 2222

# Internal parameters.

# GnuPG 2 binary in Debian Jessie and Debian Stretch is different. Additionally,
# Debian Jessie duply configuration expects short keys, while Debian Stretch
# expects long keys. We set-up parameters for this here in a bit of a workaround
# way instead of setting facts within the playbook.
backup_client_gnupg_details:
  jessie:
    binary: gpg2
    cutoff: '{8}'
  stretch:
    binary: gpg
    cutoff: '{0}'

gnupg_binary: "{{ backup_client_gnupg_details[ansible_distribution_release]['binary'] }}"
gnupg_key_cutoff: "{{ backup_client_gnupg_details[ansible_distribution_release]['cutoff'] }}"