freeipa / freeipa.ansible_freeipa / 1.8.4 / module / ipaserver_prepare Prepare IPA server deployment Authors: Thomas Woerner preview | supported by communityfreeipa.ansible_freeipa.ipaserver_prepare (1.8.4) — module
Install with ansible-galaxy collection install freeipa.ansible_freeipa:==1.8.4
collections: - name: freeipa.ansible_freeipa version: 1.8.4
Prepare IPA server deployment
force: description: Installer force parameter required: true realm: description: Kerberos realm name of the IPA deployment required: false domain: description: Primary DNS domain of the IPA deployment required: false hostname: description: Fully qualified name of this host required: true password: description: Admin user kerberos password required: false rid_base: description: Start value for mapping UIDs and GIDs to RIDs required: true setup_ca: description: Configure a dogtag CA required: true setup_dns: description: Configure bind with our zone required: true setup_kra: description: Configure a dogtag KRA required: true ca_subject: description: The installer ca_subject setting required: true forwarders: description: Add DNS forwarders required: true no_reverse: description: Do not create new reverse DNS zone required: true dm_password: description: Directory Manager password required: false external_ca: description: External ca setting required: true no_host_dns: description: Do not use DNS for hostname lookup during installation required: true auto_reverse: description: Create necessary reverse zones required: true ip_addresses: description: List of Master Server IP Addresses required: true netbios_name: description: NetBIOS name of the IPA domain required: true subject_base: description: The certificate subject base (default O=<realm-name>). RDNs are in LDAP order (most specific RDN first). required: true ca_cert_files: description: List of files containing CA certificates for the service certificate files required: true enable_compat: description: Enable support for trusted domains for old clients required: true no_forwarders: description: Do not add any DNS forwarders, use root servers instead required: true reverse_zones: description: The reverse DNS zones to use required: true setup_adtrust: description: Configure AD trust capability required: true forward_policy: description: DNS forwarding policy for global forwarders required: true auto_forwarders: description: Use DNS forwarders configured in /etc/resolv.conf required: true external_ca_type: description: Type of the external CA required: true allow_zone_overlap: description: Create DNS zone even if it already exists required: true secondary_rid_base: description: Start value of the secondary range for mapping UIDs and GIDs to RIDs required: true external_ca_profile: description: Specify the certificate profile/template to use at the external CA required: true external_cert_files: description: File containing the IPA CA certificate and the external CA certificate chain required: true _hostname_overridden: description: The installer _hostname_overridden setting required: true no_dnssec_validation: description: Disable DNSSEC validation required: true sid_generation_always: description: Enable SID generation always required: true