Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- master_id: master-MasterOfMaster
- default_include: master.d/*.conf
- ipv6: True
- interface: '::'
- pki_dir: /etc/salt/pki/master
- timeout: 600
- state_events: True
- worker_threads: 20
- token_expire: 86400
- keep_jobs_seconds: 259200
- max_event_size: 5000000
- backend: requests
- show_jid: True
- module_dirs:
- - /etc/salt/_modules
- netapi_enable_clients:
- - local
- - local_async
- - runner
- docker.exec_driver: docker-exec
- redis.host: '::1'
- redis.port: 6379
- redis.db: 0
- pillarenv_from_saltenv: True
- cli_summary: True
- ## master.d/*
- rest_cherrypy:
- host: '127.0.0.1'
- port: 8000
- disable_ssl: True
- webhook_disable_auth: True
- webhook_url: /hook
- rest_timeout: 300
- engines:
- - logging_gelf:
- host: logs.domain.net
- port: 12201
- external_auth:
- ldap:
- jenkins-bot:
- - '*':
- - docker.restart
- - dcom_publish.main
- - mine.flush
- - mine.update
- - saltutil.refresh_pillar
- - saltutil.sync_modules
- - schedule.reload
- - state.apply
- - '@jobs'
- - '@wheel'
- - '@runners'
- 'salt-dcom%':
- - '.*':
- - dcom_get_vtoken.main
- - dcom_add_temp_tokens.main
- 'salt-admin%':
- - '.*'
- - '@jobs'
- - '@wheel'
- - '@runners'
- file_roots:
- base:
- - /etc/salt
- - /etc/salt/repos
- - /etc/salt/prod/states
- - /etc/salt/templates
- __env__:
- - /etc/salt
- - /etc/salt/repos
- - /etc/salt/__env__/states
- - /etc/salt/templates
- auth.ldap.server: 127.0.0.1
- auth.ldap.port: 389
- auth.ldap.tls: False
- auth.ldap.starttls: False
- auth.ldap.scope: 2
- auth.ldap.basedn: dc=domain,dc=net
- auth.ldap.binddn: uid={{username}},ou=people,dc=domain,dc=net
- auth.ldap.filter: uid={{ username }}
- auth.ldap.no_verify: True
- auth.ldap.anonymous: False
- auth.ldap.auth_by_group_membership_only: False
- auth.ldap.groupou: 'group'
- auth.ldap.groupclass: 'posixGroup'
- auth.ldap.groupattribute: 'member'
- auth.ldap.accountattributename: 'uid'
- auth.ldap.group_basedn: ou=group,dc=domain,dc=net
- auth.ldap.group_filter: '(&(member=uid={{username}},ou=people,dc=domain,dc=net)(objectClass=posixGroup))'
- auth.ldap.activedirectory: False
- auth.ldap.persontype: 'person'
- auth.ldap.minion_stripdomains: []
- auth.ldap.freeipa: True
- order_masters: True
- peer_run:
- '.*':
- - vault.generate_token
- pillar_roots:
- base:
- - /etc/salt/prod/pillar
- __env__:
- - /etc/salt/__env__/pillar
- publisher_acl:
- jenkins-bot:
- - '.*':
- - dcom_publish.main
- - mine.flush
- - mine.update
- - saltutil.refreah_pillar
- - saltutil.sync_modules
- - schedule.reload
- - state.apply
- 'salt-dcom%':
- - '.*':
- - dcom_get_vtoken.main
- - dcom_add_temp_tokens.main
- 'salt-admin%':
- - '.*'
- reactor:
- - 'salt/beacon/*/service/*':
- - salt://reactor/service.sls
- - 'salt/netapi/hook/cli_msg/*':
- - salt://reactor/cli_message.sls
- - 'salt/beacon/*/inotify//etc/salt/minion':
- - salt://reactor/inotify.sls
- - 'salt/minion/*/start':
- - salt://reactor/sync_grains.sls
- - salt://reactor/sync_modules.sls
- - 'salt/engines/docker_events/die':
- - salt://reactor/authelia_failover.sls
- - 'salt/engines/docker_events/start':
- - salt://reactor/authelia_failover.sls
- osenv:
- driver: env
- vault:
- url: sdb://osenv/VAULT_URL
- verify: /etc/salt/repos/domain.net/certs/domain.net.ca-bundle
- auth:
- method: approle
- role_id: sdb://osenv/VAULT_ROLE_ID
- secret_id: sdb://osenv/VAULT_SECRET_ID
- policies:
- - agent_docker-salt
Advertisement
Add Comment
Please, Sign In to add comment