Commit graph

10 commits

Author SHA1 Message Date
irl
e098840fab feat(podman_keycloak): nginx enhancements (buffering + DNS)
Some checks failed
Ansible Lint Check / lint (push) Failing after 57s
* lookup of the keycloak container is at runtime to allow for
  the keycloak container being restarted while nginx is running
* increased buffer sizes to permit for larger signed SAML exchanges
  (was required for Google Workspace)
2025-11-30 15:02:54 +00:00
irl
57c58eb26a fix(podman_keycloak): allow override of podman username 2025-11-30 15:02:16 +00:00
irl
f65ad3fce2 fix(podman_nginx): modifying firewall requires become 2025-11-30 15:00:16 +00:00
irl
78aad663e6 feat(baseline): move freeipa related lockdown overrides to role from playbook
Some checks failed
Ansible Lint Check / lint (push) Failing after 57s
2025-11-08 21:00:18 +00:00
irl
ec972f9470 feat(baseline): enable with-subid feature for sssd 2025-11-08 20:59:45 +00:00
irl
7792cac0c7 feat(podman_host): do not create local users and assume a user exists
For SR2's usage, these users will exist because they have been created
in FreeIPA along with their subids.
2025-11-08 20:57:45 +00:00
irl
b471a034a4 feat(podman_nginx): configure firewalld 2025-11-08 20:56:53 +00:00
irl
b360d0e861 docs: bump version for RHEL9-CIS role
All checks were successful
Ansible Lint Check / lint (push) Successful in 59s
2025-11-01 15:21:36 +00:00
irl
1d5d39d1c2 lint: ansible-lint suggested updates 2025-11-01 15:21:36 +00:00
irl
2ba6c6691b Initial import; migrate some roles from irl.wip 2025-10-31 22:36:32 +00:00