File tree Expand file tree Collapse file tree 3 files changed +9
-1
lines changed Expand file tree Collapse file tree 3 files changed +9
-1
lines changed Original file line number Diff line number Diff line change 144144 keycloak => $foreman::keycloak ,
145145 keycloak_app_name => $foreman::keycloak_app_name ,
146146 keycloak_realm => $foreman::keycloak_realm ,
147+ manage_selinux_booleans => $foreman::manage_selinux_booleans ,
147148 }
148149
149150 contain foreman::config::apache
Original file line number Diff line number Diff line change 9898# @param keycloak_realm
9999# The realm as passed to keycloak-httpd-client-install
100100#
101+ # @param manage_selinux_booleans
102+ # If true AND selinux is enabled on the node, set httpd_can_network_connect so apache works properly
103+ #
101104class foreman::config::apache (
102105 Stdlib::Absolutepath $app_root = ' /usr/share/foreman' ,
103106 String $priority = ' 05' ,
131134 Boolean $keycloak = false ,
132135 String[1] $keycloak_app_name = ' foreman-openidc' ,
133136 String[1] $keycloak_realm = ' ssl-realm' ,
137+ Boolean $manage_selinux_booleans = true ,
134138) {
135139 $docroot = " ${app_root} /public"
136140
232236 ],
233237 }
234238
235- if $facts [' os' ][' selinux' ][' enabled' ] {
239+ if $facts [' os' ][' selinux' ][' enabled' ] and $manage_selinux_booleans {
236240 selboolean { 'httpd_can_network_connect' :
237241 persistent => true ,
238242 value => ' on' ,
Original file line number Diff line number Diff line change 199199#
200200# $rails_cache_store:: Set rails cache store
201201#
202+ # $manage_selinux_booleans:: If true AND selinux is enabled on the node, set httpd_can_network_connect so apache works properly
203+ #
202204# === Keycloak parameters:
203205#
204206# $keycloak:: Enable Keycloak support. Note this is limited
308310 Boolean $keycloak = $foreman::params::keycloak,
309311 String[1] $keycloak_app_name = $foreman::params::keycloak_app_name,
310312 String[1] $keycloak_realm = $foreman::params::keycloak_realm,
313+ Boolean $manage_selinux_booleans = false ,
311314) inherits foreman::params {
312315 if $db_sslmode == ' UNSET' and $db_root_cert {
313316 $db_sslmode_real = ' verify-full'
You can’t perform that action at this time.
0 commit comments