Files @ ec4e3e91c4d3
Branch filter:

Location: majic-ansible-roles/testsite/tls/gnutls_server_certificate.cfg.j2

branko
MAR-128: Upgraded tests for ldap_server role:

- Switch to new Molecule configuration.
- Updated set-up playbook to use become: yes.
- Moved some preparatory steps outside of the main playbook (eases
idempotence tests).
- Updated tests to reference the yml inventory file.
- Updated tests to use new fixture (host instead of individual ones).
- Fixed some linting issues.
- Use localhost as backup client server name. This should make it
simpler in future to cover more platforms.
- Set-up the /etc/hosts for tests with correct entries (primarily
aliases towards localhost to make it less important what the
hostname is).
- Renamed private key/certificate files for parameters-mandatory
server since server got renamed as well.
- Updated IP addresses used for testing to make it easier to test new
platforms in the future.
- Use inventory_hostname-based parameterisation of tests where
appropriate. Currently hard-coded value for this because
host.ansible.get_variables() produces errors.
# X.509 Certificate options
#
# DN options

# The organization of the subject.
organization = "Example Inc."

# The country of the subject. Two letter code.
country = SE

# The common name of the certificate owner.
cn = "Exampe Inc. {{ item.name }} Server"

# In how many days, counting from today, this certificate will expire.
expiration_days = 365

# X.509 v3 extensions

# A dnsname in case of a WWW server.
dns_name = "{{ item.hostname }}.{{ testsite_domain }}"

# Whether this certificate will be used for a TLS server
tls_www_server

# Whether this certificate will be used to sign data (needed
# in TLS DHE ciphersuites).
signing_key

# Whether this certificate will be used to encrypt data (needed
# in TLS RSA ciphersuites). Note that it is preferred to use different
# keys for encryption and signing.
encryption_key