Setup radius 2 in prod

This commit is contained in:
Johan Wassberg 2024-07-16 11:44:12 +02:00
parent 8e0e1cd8e7
commit 72a16ba536
Signed by: jocar
GPG key ID: BE4EC2EEADF2C31B
2 changed files with 24 additions and 0 deletions

View file

@ -9,3 +9,18 @@ mariadb_cluster_nodes:
- 89.47.185.115 # internal-sto1-prod-db-1.geteduroam.sunet.se - 89.47.185.115 # internal-sto1-prod-db-1.geteduroam.sunet.se
- 89.47.190.224 # internal-dco-prod-db-2.geteduroam.sunet.se - 89.47.190.224 # internal-dco-prod-db-2.geteduroam.sunet.se
acmed_primary: internal-sto1-prod-radius-1.geteduroam.sunet.se
acmed_agent_ips:
- 89.47.191.170
- 2001:6b0:7d:40::3a9
#acmed_agent_ssh_keys_db:
# 'internal-dco-prod-radius-2':
# key : 'AAAAC3NzaC1lZDI1NTE5AAAAIDaDxm15BEYlrIqUigpQvZ4z6CNChCsyAmM2oMU1gkoP'
# type : 'ssh-ed25519'
# name : 'internal-dco-prod-radius-2'
# options : 'command="/usr/bin/rrsync /etc/letsencrypt/",no-agent-forwarding,no-port-forwarding,no-pty,no-user-rc,no-X11-forwarding'
#acmed_agent_ssh_keys_mapping:
# 'root':
# - 'internal-dco-test-radius-2'

View file

@ -169,3 +169,12 @@ internal-sto1-prod-radius-1.geteduroam.sunet.se:
realm: v1.geteduroam.se realm: v1.geteduroam.se
app: false app: false
sunet::certbot::acmed: sunet::certbot::acmed:
internal-dco-prod-radius-2.geteduroam.sunet.se:
sunet::dockerhost2:
sunet::geteduroam:
domain: geteduroam.se
realm: v1.geteduroam.se
app: false
sunet::certbot::acmed:
agent: true