[rules,cfg/crans/secret] les secrets sont à respbats sur zamok uniquement

darcs-hash:20081209231706-af139-7af070f0a4c7d85d39f3a55889dab8d8af17e3d2.gz
This commit is contained in:
Jeremie Dimino 2008-12-10 00:17:06 +01:00
parent 2db9600739
commit 972fc7aaef
2 changed files with 10 additions and 2 deletions

View file

@ -1,4 +1,7 @@
info["perms"] = 0440 info["perms"] = 0440
info["owner"] = "respbats" if has("users"):
info["owner"] = "respbats"
else:
info["owner"] = "root"
info["group"] = "adm" info["group"] = "adm"
print file("/etc/crans/secrets/secrets.py").read() print file("/etc/crans/secrets/secrets.py").read()

View file

@ -26,7 +26,12 @@
timing="post" when="modified" status="check" timing="post" when="modified" status="check"
command="cat /etc/crans/apt-keys/*.asc | apt-key add -"/> command="cat /etc/crans/apt-keys/*.asc | apt-key add -"/>
<Directory name="/etc/crans/secrets" owner="respbats" group="adm" perms="0550"/> <Group name="users">
<Directory name="/etc/crans/secrets" owner="respbats" group="adm" perms="0550"/>
</Group>
<Group name="users" negate="true">
<Directory name="/etc/crans/secrets" owner="root" group="adm" perms="0550"/>
</Group>
<Service type="deb" name="bcfg2" status="on"/> <Service type="deb" name="bcfg2" status="on"/>
<Service type="deb" name="bcfg2-server" status="on"/> <Service type="deb" name="bcfg2-server" status="on"/>