|
16 | 16 | # |
17 | 17 | class openvpn::params { |
18 | 18 |
|
19 | | - case $::osfamily { |
20 | | - 'RedHat': { |
| 19 | + case $facts['os']['family'] { |
| 20 | + 'RedHat': { # RedHat/CentOS |
21 | 21 | $etc_directory = '/etc' |
22 | 22 | $root_group = 'root' |
23 | 23 | $group = 'nobody' |
24 | 24 | $link_openssl_cnf = true |
25 | 25 | $pam_module_path = '/usr/lib64/openvpn/plugin/lib/openvpn-auth-pam.so' |
26 | 26 | $namespecific_rclink = false |
| 27 | + $default_easyrsa_ver = '3.0' |
| 28 | + $easyrsa_source = '/usr/share/easy-rsa/3' |
27 | 29 |
|
28 | | - # Redhat/Centos >= 7.0 |
29 | | - if(versioncmp($::operatingsystemrelease, '7.0') >= 0) and $::operatingsystem != 'Amazon' { |
30 | | - $additional_packages = ['easy-rsa'] |
31 | | - $ldap_auth_plugin_location = undef |
32 | | - $systemd = true |
33 | | - $easyrsa_source = '/usr/share/easy-rsa/3' |
34 | | - $default_easyrsa_ver = '3.0' |
35 | | - # Redhat/Centos == 6.0 |
36 | | - } elsif(versioncmp($::operatingsystemrelease, '6.0') >= 0) and $::operatingsystem != 'Amazon' { |
37 | | - $additional_packages = ['easy-rsa','openvpn-auth-ldap'] |
38 | | - $ldap_auth_plugin_location = '/usr/lib64/openvpn/plugin/lib/openvpn-auth-ldap.so' |
39 | | - $systemd = false |
40 | | - $easyrsa_source = '/usr/share/easy-rsa/3' |
41 | | - $default_easyrsa_ver = '3.0' |
42 | | - # Redhat/Centos < 6.0 |
43 | | - } else { |
44 | | - $additional_packages = ['easy-rsa'] |
45 | | - $ldap_auth_plugin_location = undef |
46 | | - $systemd = false |
47 | | - $easyrsa_source = '/usr/share/easy-rsa/2.0' |
48 | | - $default_easyrsa_ver = '2.0' |
| 30 | + case $facts['os']['release']['major'] { |
| 31 | + '7': { |
| 32 | + $additional_packages = ['easy-rsa'] |
| 33 | + $ldap_auth_plugin_location = undef |
| 34 | + $systemd = true |
| 35 | + } |
| 36 | + '6': { |
| 37 | + $additional_packages = ['easy-rsa','openvpn-auth-ldap'] |
| 38 | + $ldap_auth_plugin_location = '/usr/lib64/openvpn/plugin/lib/openvpn-auth-ldap.so' |
| 39 | + $systemd = false |
| 40 | + } |
| 41 | + default: { |
| 42 | + fail("unsupported OS ${facts['os']['name']} ${facts['os']['release']['major']}") |
| 43 | + } |
49 | 44 | } |
50 | 45 | } |
51 | 46 | 'Debian': { # Debian/Ubuntu |
52 | | - $etc_directory = '/etc' |
53 | | - $root_group = 'root' |
54 | | - $group = 'nogroup' |
55 | | - $link_openssl_cnf = true |
56 | | - $namespecific_rclink = false |
| 47 | + $etc_directory = '/etc' |
| 48 | + $root_group = 'root' |
| 49 | + $group = 'nogroup' |
| 50 | + $link_openssl_cnf = true |
| 51 | + $namespecific_rclink = false |
| 52 | + $default_easyrsa_ver = '2.0' |
| 53 | + $additional_packages = ['easy-rsa','openvpn-auth-ldap'] |
| 54 | + $easyrsa_source = '/usr/share/easy-rsa/' |
| 55 | + $ldap_auth_plugin_location = '/usr/lib/openvpn/openvpn-auth-ldap.so' |
| 56 | + $pam_module_path = '/usr/lib/openvpn/openvpn-plugin-auth-pam.so' |
57 | 57 |
|
58 | | - case $::operatingsystem { |
| 58 | + case $facts['os']['name'] { |
59 | 59 | 'Debian': { |
60 | | - # Version > 8.0, jessie, stretch |
61 | | - $default_easyrsa_ver = '2.0' |
62 | | - if(versioncmp($::operatingsystemrelease, '8.0') >= 0) { |
63 | | - $additional_packages = ['easy-rsa','openvpn-auth-ldap'] |
64 | | - $easyrsa_source = '/usr/share/easy-rsa/' |
65 | | - $ldap_auth_plugin_location = '/usr/lib/openvpn/openvpn-auth-ldap.so' |
66 | | - $pam_module_path = '/usr/lib/openvpn/openvpn-plugin-auth-pam.so' |
67 | | - $systemd = true |
68 | | - |
69 | | - # Version > 7.0, wheezy |
70 | | - } elsif(versioncmp($::operatingsystemrelease, '7.0') >= 0) { |
71 | | - $additional_packages = ['openvpn-auth-ldap'] |
72 | | - $easyrsa_source = '/usr/share/doc/openvpn/examples/easy-rsa/2.0' |
73 | | - $ldap_auth_plugin_location = '/usr/lib/openvpn/openvpn-auth-ldap.so' |
74 | | - $pam_module_path = '/usr/lib/openvpn/openvpn-auth-pam.so' |
75 | | - $systemd = false |
76 | | - } else { |
77 | | - $additional_packages = undef |
78 | | - $easyrsa_source = '/usr/share/doc/openvpn/examples/easy-rsa/2.0' |
79 | | - $ldap_auth_plugin_location = undef |
80 | | - $pam_module_path = '/usr/lib/openvpn/openvpn-auth-pam.so' |
81 | | - $systemd = false |
| 60 | + case $facts['os']['release']['major'] { |
| 61 | + '8','9': { |
| 62 | + $systemd = true |
| 63 | + } |
| 64 | + default: { |
| 65 | + fail("unsupported OS ${facts['os']['name']} ${facts['os']['release']['major']}") |
| 66 | + } |
82 | 67 | } |
83 | 68 | } |
84 | 69 | 'Ubuntu': { |
85 | | - $default_easyrsa_ver = '2.0' |
86 | | - # Version > 15.04, vivid |
87 | | - if(versioncmp($::operatingsystemrelease, '15.04') >= 0){ |
88 | | - $additional_packages = ['easy-rsa','openvpn-auth-ldap'] |
89 | | - $easyrsa_source = '/usr/share/easy-rsa/' |
90 | | - $ldap_auth_plugin_location = '/usr/lib/openvpn/openvpn-auth-ldap.so' |
91 | | - $pam_module_path = '/usr/lib/openvpn/openvpn-plugin-auth-pam.so' |
92 | | - $systemd = true |
93 | | - |
94 | | - # Version > 13.10, saucy |
95 | | - } elsif(versioncmp($::operatingsystemrelease, '13.10') >= 0) { |
96 | | - $additional_packages = ['easy-rsa','openvpn-auth-ldap'] |
97 | | - $easyrsa_source = '/usr/share/easy-rsa/' |
98 | | - $ldap_auth_plugin_location = '/usr/lib/openvpn/openvpn-auth-ldap.so' |
99 | | - $pam_module_path = '/usr/lib/openvpn/openvpn-plugin-auth-pam.so' |
100 | | - $systemd = false |
101 | | - } else { |
102 | | - $additional_packages = undef |
103 | | - $easyrsa_source = '/usr/share/doc/openvpn/examples/easy-rsa/2.0' |
104 | | - $ldap_auth_plugin_location = undef |
105 | | - $pam_module_path = '/usr/lib/openvpn/openvpn-auth-pam.so' |
106 | | - $systemd = false |
| 70 | + case $facts['os']['release']['major'] { |
| 71 | + '16.04': { |
| 72 | + $systemd = true |
| 73 | + } |
| 74 | + '14.04': { |
| 75 | + $systemd = false |
| 76 | + } |
| 77 | + default: { |
| 78 | + fail("unsupported OS ${facts['os']['name']} ${facts['os']['release']['major']}") |
| 79 | + } |
107 | 80 | } |
108 | 81 | } |
109 | 82 | default: { |
110 | | - fail("Unsupported OS/Distribution ${::osfamily}/${::operatingsystem}") |
| 83 | + fail("unsupported OS ${facts['os']['name']} ${facts['os']['release']['major']}") |
111 | 84 | } |
112 | 85 | } |
113 | 86 | } |
|
119 | 92 | $easyrsa_source = '/usr/share/easy-rsa/' |
120 | 93 | $group = 'nobody' |
121 | 94 | $ldap_auth_plugin_location = undef # unsupported |
| 95 | + $pam_module_path = undef |
122 | 96 | $link_openssl_cnf = true |
123 | 97 | $systemd = true |
124 | 98 | $namespecific_rclink = false |
125 | 99 | } |
126 | | - 'Linux': { |
127 | | - $default_easyrsa_ver = '2.0' |
128 | | - case $::operatingsystem { |
129 | | - 'Amazon': { |
130 | | - $etc_directory = '/etc' |
131 | | - $root_group = 'root' |
132 | | - $group = 'nobody' |
133 | | - $additional_packages = ['easy-rsa'] |
134 | | - $easyrsa_source = '/usr/share/easy-rsa/2.0' |
135 | | - $ldap_auth_plugin_location = undef |
136 | | - $systemd = false |
137 | | - $link_openssl_cnf = true |
138 | | - $pam_module_path = '/usr/lib/openvpn/openvpn-auth-pam.so' |
139 | | - $namespecific_rclink = false |
140 | | - } |
141 | | - default: { |
142 | | - fail("Unsupported OS/Distribution ${::osfamily}/${::operatingsystem}") |
143 | | - } |
144 | | - } |
145 | | - } |
146 | 100 | 'FreeBSD': { |
147 | 101 | $etc_directory = '/usr/local/etc' |
148 | 102 | $root_group = 'wheel' |
|
156 | 110 | $systemd = false |
157 | 111 | } |
158 | 112 | default: { |
159 | | - fail("Not supported OS family ${::osfamily}") |
| 113 | + fail("unsupported OS ${facts['os']['name']} ${facts['os']['release']['major']}") |
160 | 114 | } |
161 | 115 | } |
| 116 | + |
162 | 117 | $easyrsa_version = $facts['easyrsa'] ? { |
163 | 118 | undef => $default_easyrsa_ver, |
164 | 119 | default => $facts['easyrsa'], |
|
0 commit comments