Adding a small variable to the OpenSSH sshd_config file so that the service will work correctly on Centos 6.4 and earlier
This commit is contained in:
parent
d35929876f
commit
2e229681c7
@ -102,7 +102,11 @@ PrintMotd no # pam does that
|
|||||||
#PrintLastLog yes
|
#PrintLastLog yes
|
||||||
#TCPKeepAlive yes
|
#TCPKeepAlive yes
|
||||||
#UseLogin no
|
#UseLogin no
|
||||||
|
{% if grains['os_family'] == 'RedHat' %}
|
||||||
|
UsePrivilegeSeparation yes # RedHat/Centos 6.4 and earlier currently ship 5.3 (sandbox introduced in OpenSSH 5.9)
|
||||||
|
{% else %}
|
||||||
UsePrivilegeSeparation sandbox # Default for new installations.
|
UsePrivilegeSeparation sandbox # Default for new installations.
|
||||||
|
{% endif %}
|
||||||
#PermitUserEnvironment no
|
#PermitUserEnvironment no
|
||||||
#Compression delayed
|
#Compression delayed
|
||||||
#ClientAliveInterval 0
|
#ClientAliveInterval 0
|
||||||
|
@ -29,6 +29,7 @@ sshd_config:
|
|||||||
file.managed:
|
file.managed:
|
||||||
- name: /etc/ssh/sshd_config
|
- name: /etc/ssh/sshd_config
|
||||||
- source: salt://openssh/files/sshd_config
|
- source: salt://openssh/files/sshd_config
|
||||||
|
- template: jinja
|
||||||
- user: root
|
- user: root
|
||||||
- mode: 600
|
- mode: 600
|
||||||
|
|
||||||
|
Loading…
Reference in New Issue
Block a user