Changeset - af834be42e8e
[Not reviewed]
roles/mail_forwarder/molecule/default/tests/test_default.py
Show inline comments
 
@@ -85,13 +85,13 @@ def test_firewall_configuration_file(host):
 
        assert config.group == 'root'
 
        assert config.mode == 0o640
 

	
 

	
 
def test_smtp_server_dh_parameter_file(host):
 
    """
 
    Tests if the Diffie-Helman parameter file has been generated
 
    Tests if the Diffie-Hellman parameter file has been generated
 
    correctly.
 
    """
 

	
 
    hostname = host.run('hostname').stdout.strip()
 
    dhparam_file_path = '/etc/ssl/private/%s_smtp.dh.pem' % hostname
 

	
 
@@ -106,13 +106,13 @@ def test_smtp_server_dh_parameter_file(host):
 

	
 
        assert "DH Parameters: (2048 bit)" in dhparam_info.stdout
 

	
 

	
 
def test_smtp_server_uses_correct_dh_parameters(host):
 
    """
 
    Tests if the SMTP server uses the generated Diffie-Helman parameter.
 
    Tests if the SMTP server uses the generated Diffie-Hellman parameter.
 
    """
 

	
 
    hostname = host.run('hostname').stdout.strip()
 

	
 
    with host.sudo():
 
        expected_dhparam = host.file('/etc/ssl/private/%s_smtp.dh.pem' % hostname).content_string.rstrip()
roles/mail_forwarder/tasks/main.yml
Show inline comments
 
@@ -21,13 +21,13 @@
 
    content: "{{ smtp_relay_truststore }}"
 
    dest: "/etc/ssl/certs/smtp_relay_truststore.pem"
 
    owner: root
 
    group: root
 
    mode: 0644
 

	
 
- name: Generate the SMTP server Diffie-Helman parameter
 
- name: Generate the SMTP server Diffie-Hellman parameter
 
  openssl_dhparam:
 
    owner: root
 
    group: root
 
    mode: 0640
 
    path: "/etc/ssl/private/{{ ansible_fqdn }}_smtp.dh.pem"
 
    size: 2048
roles/mail_server/molecule/default/tests/test_default.py
Show inline comments
 
@@ -356,13 +356,13 @@ def test_firewall_configuration_file(host):
 
        assert config.group == 'root'
 
        assert config.mode == 0o640
 

	
 

	
 
def test_smtp_server_dh_parameter_file(host):
 
    """
 
    Tests if the Diffie-Helman parameter file has been generated
 
    Tests if the Diffie-Hellman parameter file has been generated
 
    correctly.
 
    """
 

	
 
    hostname = host.run('hostname').stdout.strip()
 
    dhparam_file_path = '/etc/ssl/private/%s_smtp.dh.pem' % hostname
 

	
 
@@ -377,13 +377,13 @@ def test_smtp_server_dh_parameter_file(host):
 

	
 
        assert "DH Parameters: (2048 bit)" in dhparam_info.stdout
 

	
 

	
 
def test_smtp_server_uses_correct_dh_parameters(host):
 
    """
 
    Tests if the SMTP server uses the generated Diffie-Helman parameter.
 
    Tests if the SMTP server uses the generated Diffie-Hellman parameter.
 
    """
 

	
 
    hostname = host.run('hostname').stdout.strip()
 

	
 
    with host.sudo():
 
        expected_dhparam = host.file('/etc/ssl/private/%s_smtp.dh.pem' % hostname).content_string.rstrip()
 
@@ -398,13 +398,13 @@ def test_smtp_server_uses_correct_dh_parameters(host):
 

	
 
    assert used_dhparam == expected_dhparam
 

	
 

	
 
def test_imap_server_uses_correct_dh_parameters(host):
 
    """
 
    Tests if the IMAP server uses correct Diffie-Helman parameters.
 
    Tests if the IMAP server uses correct Diffie-Hellman parameters.
 
    """
 

	
 
    connection = host.run("gnutls-cli --no-ca-verification --starttls-proto=imap --port 143 "
 
                          "--priority 'NONE:+VERS-TLS1.2:+CTYPE-X509:+COMP-NULL:+SIGN-RSA-SHA384:+DHE-RSA:+SHA384:+AEAD:+AES-256-GCM' localhost")
 

	
 
    assert " - Using prime: 2048 bits" in connection.stdout
roles/mail_server/tasks/main.yml
Show inline comments
 
@@ -56,13 +56,13 @@
 
    mode: 0644
 
    owner: root
 
    group: root
 
  notify:
 
    - Restart Postfix
 

	
 
- name: Generate the SMTP server Diffie-Helman parameter
 
- name: Generate the SMTP server Diffie-Hellman parameter
 
  openssl_dhparam:
 
    owner: root
 
    group: root
 
    mode: 0640
 
    path: "/etc/ssl/private/{{ ansible_fqdn }}_smtp.dh.pem"
 
    size: 2048
roles/web_server/molecule/default/tests/test_default.py
Show inline comments
 
@@ -235,13 +235,13 @@ def test_php_timezone_configuration(host, php_info):
 
    assert timezone.rc == 0
 
    assert timezone.stdout == server_timezone
 

	
 

	
 
def test_https_server_dh_parameters_file(host):
 
    """
 
    Tests if the Diffie-Helman parameter file has been generated
 
    Tests if the Diffie-Hellman parameter file has been generated
 
    correctly.
 
    """
 

	
 
    hostname = host.run('hostname').stdout.strip()
 
    dhparam_file_path = '/etc/ssl/private/%s_https.dh.pem' % hostname
 

	
 
@@ -256,13 +256,13 @@ def test_https_server_dh_parameters_file(host):
 

	
 
        assert "DH Parameters: (2048 bit)" in dhparam_info.stdout
 

	
 

	
 
def test_https_server_uses_correct_dh_parameters(host):
 
    """
 
    Tests if the HTTP server uses the generated Diffie-Helman parameter.
 
    Tests if the HTTP server uses the generated Diffie-Hellman parameter.
 
    """
 

	
 
    hostname = host.run('hostname').stdout.strip()
 

	
 
    with host.sudo():
 
        expected_dhparam = host.file('/etc/ssl/private/%s_https.dh.pem' % hostname).content_string.rstrip()
roles/web_server/tasks/main.yml
Show inline comments
 
@@ -30,13 +30,13 @@
 
    mode: 0644
 
    owner: root
 
    group: root
 
  notify:
 
    - Restart nginx
 

	
 
- name: Generate the HTTPS server Diffie-Helman parameter
 
- name: Generate the HTTPS server Diffie-Hellman parameter
 
  openssl_dhparam:
 
    owner: root
 
    group: root
 
    mode: 0640
 
    path: "/etc/ssl/private/{{ ansible_fqdn }}_https.dh.pem"
 
    size: 2048
roles/xmpp_server/molecule/default/tests/test_default.py
Show inline comments
 
@@ -123,13 +123,13 @@ def test_firewall_configuration_file(host):
 
        assert config.group == 'root'
 
        assert config.mode == 0o640
 

	
 

	
 
def test_xmpp_server_dh_parameters_file(host):
 
    """
 
    Tests if the Diffie-Helman parameter file has been generated
 
    Tests if the Diffie-Hellman parameter file has been generated
 
    correctly.
 
    """
 

	
 
    fqdn = host.run('hostname -f').stdout.strip()
 
    dhparam_file_path = '/etc/ssl/private/%s_xmpp.dh.pem' % fqdn
 

	
roles/xmpp_server/molecule/default/tests/test_mandatory.py
Show inline comments
 
@@ -82,13 +82,13 @@ def test_correct_prosody_package_installed(host):
 

	
 
    assert host.package('prosody-0.10').is_installed
 

	
 

	
 
def test_xmpp_server_uses_correct_dh_parameters(host):
 
    """
 
    Tests if the HTTP server uses the generated Diffie-Helman parameter.
 
    Tests if the HTTP server uses the generated Diffie-Hellman parameter.
 
    """
 

	
 
    fqdn = host.run('hostname -f').stdout.strip()
 

	
 
    with host.sudo():
 
        expected_dhparam = host.file('/etc/ssl/private/%s_xmpp.dh.pem' % fqdn).content_string.rstrip()
roles/xmpp_server/molecule/default/tests/test_optional.py
Show inline comments
 
@@ -88,13 +88,13 @@ def test_correct_prosody_package_installed(host):
 

	
 
    assert host.package('prosody-0.9').is_installed
 

	
 

	
 
def test_xmpp_server_uses_correct_dh_parameters(host):
 
    """
 
    Tests if the HTTP server uses the generated Diffie-Helman parameter.
 
    Tests if the HTTP server uses the generated Diffie-Hellman parameter.
 
    """
 

	
 
    fqdn = host.run('hostname -f').stdout.strip()
 

	
 
    with host.sudo():
 
        expected_dhparam = host.file('/etc/ssl/private/%s_xmpp.dh.pem' % fqdn).content_string.rstrip()
roles/xmpp_server/tasks/main.yml
Show inline comments
 
@@ -54,13 +54,13 @@
 
    owner: root
 
    group: root
 
    mode: 0644
 
  notify:
 
    - Restart Prosody
 

	
 
- name: Generate the XMPP server Diffie-Helman parameter
 
- name: Generate the XMPP server Diffie-Hellman parameter
 
  openssl_dhparam:
 
    owner: root
 
    group: prosody
 
    mode: 0640
 
    path: "/etc/ssl/private/{{ ansible_fqdn }}_xmpp.dh.pem"
 
    size: 2048
0 comments (0 inline, 0 general)