Skip to main content

ansible-role-lunasa-hsm - Ansible role to configure Lunasa HSM clients.

Project description

A role to manage Thales Luna Network Hardware Security Module (HSM) clients.

Role Variables

This ansible role automates the configuration of a new client for the Thales Luna Network HSM.

Name

Default Value

Description

lunasa_appliance_user:

admin

Appliance User account used to log into the HSM to manage clients and parititon assignments.

lunasa_ssh_cipher:

aes256-cbc

-c cipher_spec argument passed to SSH/SCP when connecting to the HSM as the lunasa_appliance_user.

lunasa_client_working_dir

/tmp/lunasa_client_install

Working directory in the target host.

lunasa_client_tarball_name

None

Filename for the Lunasa client software tarball.

lunasa_client_tarball_location

None

Full URL where a copy of the client software tarball can be downloaded.

lunasa_client_installer_path

None

Path to the instal.sh script inside the tarball.

lunasa_client_device

sa

Luna product parameter passed to the Luna client software install.sh script.

lunasa_client_pin

None

The HSM Partition Password (PKCS#11 PIN) to be used by the client.

lunasa_client_ip

None

(Optional) When set, this role will use the given IP to register the client instead of the client’s fqdn.

lunasa_client_rotate_cert

False

When set to True, the role will generate a new client certificate to replace the previous one.

lunasa_hsms

None

List of dictionaries, each of which describes a single HSM see vars.sample.yaml for details. When more than one HSM is listed here, the client will be configured in HA mode.

Requirements

  • ansible >= 2.4

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

ansible_role_lunasa_hsm-10.0.0.0rc1.tar.gz (10.1 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

ansible_role_lunasa_hsm-10.0.0.0rc1-py3-none-any.whl (11.1 kB view details)

Uploaded Python 3

File details

Details for the file ansible_role_lunasa_hsm-10.0.0.0rc1.tar.gz.

File metadata

File hashes

Hashes for ansible_role_lunasa_hsm-10.0.0.0rc1.tar.gz
Algorithm Hash digest
SHA256 0cbf3ddf249ee77e9b4125291ccf5d8858e71a8f292c15e49aeb0777a0a4525b
MD5 bf44a2d98008e03dba612ce643c3b20f
BLAKE2b-256 1295113f85338d22b5b3c16c078581a6149ae6419347e883653bcd3d9ad55260

See more details on using hashes here.

File details

Details for the file ansible_role_lunasa_hsm-10.0.0.0rc1-py3-none-any.whl.

File metadata

File hashes

Hashes for ansible_role_lunasa_hsm-10.0.0.0rc1-py3-none-any.whl
Algorithm Hash digest
SHA256 19078beb1bc14606d083aac2489ee97a8d4d6067d64d12eac8a93184c650e0f0
MD5 dc1d0fcd77cc2e5f8031154b75c5230d
BLAKE2b-256 37c6d7f8e5330741631a925fd0de80d9438ad6daca0ea847750d3b8e00188da5

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page