366f6c036a
feat(baseline): enable project quotas for /home
Ansible Lint Check / lint (push) Failing after 58s
2025-12-04 17:30:11 +00:00
e098840fab
feat(podman_keycloak): nginx enhancements (buffering + DNS)
...
Ansible Lint Check / lint (push) Failing after 57s
* lookup of the keycloak container is at runtime to allow for
the keycloak container being restarted while nginx is running
* increased buffer sizes to permit for larger signed SAML exchanges
(was required for Google Workspace)
2025-11-30 15:02:54 +00:00
57c58eb26a
fix(podman_keycloak): allow override of podman username
2025-11-30 15:02:16 +00:00
f65ad3fce2
fix(podman_nginx): modifying firewall requires become
2025-11-30 15:00:16 +00:00
78aad663e6
feat(baseline): move freeipa related lockdown overrides to role from playbook
Ansible Lint Check / lint (push) Failing after 57s
2025-11-08 21:00:18 +00:00
ec972f9470
feat(baseline): enable with-subid feature for sssd
2025-11-08 20:59:45 +00:00
7792cac0c7
feat(podman_host): do not create local users and assume a user exists
...
For SR2's usage, these users will exist because they have been created
in FreeIPA along with their subids.
2025-11-08 20:57:45 +00:00
b471a034a4
feat(podman_nginx): configure firewalld
2025-11-08 20:56:53 +00:00
b360d0e861
docs: bump version for RHEL9-CIS role
Ansible Lint Check / lint (push) Successful in 59s
2025-11-01 15:21:36 +00:00
1d5d39d1c2
lint: ansible-lint suggested updates
2025-11-01 15:21:36 +00:00
2ba6c6691b
Initial import; migrate some roles from irl.wip
2025-10-31 22:36:32 +00:00