Skip to main content

ansible-role-lunasa-hsm - Ansible role to configure Lunasa HSM clients.

Project description

A role to manage Thales Luna Network Hardware Security Module (HSM) clients.

Role Variables

This ansible role automates the configuration of a new client for the Thales Luna Network HSM.

Name

Default Value

Description

lunasa_appliance_user:

admin

Appliance User account used to log into the HSM to manage clients and parititon assignments.

lunasa_ssh_cipher:

aes256-cbc

-c cipher_spec argument passed to SSH/SCP when connecting to the HSM as the lunasa_appliance_user.

lunasa_client_working_dir

/tmp/lunasa_client_install

Working directory in the target host.

lunasa_client_tarball_name

None

Filename for the Lunasa client software tarball.

lunasa_client_tarball_location

None

Full URL where a copy of the client software tarball can be downloaded.

lunasa_client_installer_path

None

Path to the instal.sh script inside the tarball.

lunasa_client_device

sa

Luna product parameter passed to the Luna client software install.sh script.

lunasa_client_pin

None

The HSM Partition Password (PKCS#11 PIN) to be used by the client.

lunasa_client_ip

None

(Optional) When set, this role will use the given IP to register the client instead of the client’s fqdn.

lunasa_client_rotate_cert

False

When set to True, the role will generate a new client certificate to replace the previous one.

lunasa_hsms

None

List of dictionaries, each of which describes a single HSM see vars.sample.yaml for details. When more than one HSM is listed here, the client will be configured in HA mode.

Requirements

  • ansible >= 2.4

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

ansible_role_lunasa_hsm-11.0.0.0rc1.tar.gz (10.2 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

ansible_role_lunasa_hsm-11.0.0.0rc1-py3-none-any.whl (11.2 kB view details)

Uploaded Python 3

File details

Details for the file ansible_role_lunasa_hsm-11.0.0.0rc1.tar.gz.

File metadata

File hashes

Hashes for ansible_role_lunasa_hsm-11.0.0.0rc1.tar.gz
Algorithm Hash digest
SHA256 2f592fa7db3d89305fc95aac2fbf9078715eb9f9912a6a110a7762a6c6691c52
MD5 59f4beb0a00856ff5a49fc4611222974
BLAKE2b-256 db3c4308d8ae8d02a9d93d0f58d0bd51d422f04731b8ed8caa0aed0becff7076

See more details on using hashes here.

File details

Details for the file ansible_role_lunasa_hsm-11.0.0.0rc1-py3-none-any.whl.

File metadata

File hashes

Hashes for ansible_role_lunasa_hsm-11.0.0.0rc1-py3-none-any.whl
Algorithm Hash digest
SHA256 8c1e0a4a2267becfce775b7d596703262a42d335e78c476f8bf603d79e0a11f1
MD5 9e7f6d0233e9036c27fbb9ff3f9303ce
BLAKE2b-256 082fd24b308dd14a6e11568c4977da70438fe348f9ecd1eb363a45b2e48b8549

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page