Skip to main content

ansible-role-lunasa-hsm - Ansible role to configure Lunasa HSM clients.

Project description

A role to manage Thales Luna Network Hardware Security Module (HSM) clients.

Role Variables

This ansible role automates the configuration of a new client for the Thales Luna Network HSM.

Name

Default Value

Description

lunasa_appliance_user:

admin

Appliance User account used to log into the HSM to manage clients and parititon assignments.

lunasa_ssh_cipher:

aes256-cbc

-c cipher_spec argument passed to SSH/SCP when connecting to the HSM as the lunasa_appliance_user.

lunasa_client_working_dir

/tmp/lunasa_client_install

Working directory in the target host.

lunasa_client_tarball_name

None

Filename for the Lunasa client software tarball.

lunasa_client_tarball_location

None

Full URL where a copy of the client software tarball can be downloaded.

lunasa_client_installer_path

None

Path to the instal.sh script inside the tarball.

lunasa_client_device

sa

Luna product parameter passed to the Luna client software install.sh script.

lunasa_client_pin

None

The HSM Partition Password (PKCS#11 PIN) to be used by the client.

lunasa_client_ip

None

(Optional) When set, this role will use the given IP to register the client instead of the client’s fqdn.

lunasa_client_rotate_cert

False

When set to True, the role will generate a new client certificate to replace the previous one.

lunasa_hsms

None

List of dictionaries, each of which describes a single HSM see vars.sample.yaml for details. When more than one HSM is listed here, the client will be configured in HA mode.

Requirements

  • ansible >= 2.4

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

ansible_role_lunasa_hsm-11.0.0.tar.gz (10.1 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

ansible_role_lunasa_hsm-11.0.0-py3-none-any.whl (11.1 kB view details)

Uploaded Python 3

File details

Details for the file ansible_role_lunasa_hsm-11.0.0.tar.gz.

File metadata

  • Download URL: ansible_role_lunasa_hsm-11.0.0.tar.gz
  • Upload date:
  • Size: 10.1 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.11.14

File hashes

Hashes for ansible_role_lunasa_hsm-11.0.0.tar.gz
Algorithm Hash digest
SHA256 cb0a7ec33183ddd77700b014bad965df2b17a4874e19c92004c619be474cc5a8
MD5 e9d05132082993755c1a5959aeca6469
BLAKE2b-256 949ab950f02ed2bc6c3dcbcc2de19ebde8bc1ff2cb388675698b46220009c8d7

See more details on using hashes here.

File details

Details for the file ansible_role_lunasa_hsm-11.0.0-py3-none-any.whl.

File metadata

File hashes

Hashes for ansible_role_lunasa_hsm-11.0.0-py3-none-any.whl
Algorithm Hash digest
SHA256 1730876c806bc35d0b16d9e76c3f3ce5510bf351a7edbc830099942a9f708614
MD5 79b6b0b061523b6d9dbbf47458902e6f
BLAKE2b-256 adb4b56f88c73ca6e762b116c77db79965698baf548c707e730df3f6733e2500

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page