Skip to content

Commit

Permalink
orahost: Removed fixed password for oracle and grid from defaults
Browse files Browse the repository at this point in the history
  • Loading branch information
Rendanic committed Feb 11, 2024
1 parent efda2f9 commit 922936d
Show file tree
Hide file tree
Showing 3 changed files with 5 additions and 10 deletions.
5 changes: 5 additions & 0 deletions changelogs/fragments/os_oracle.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,5 @@
---
breaking_changes:
- "orahost: Removed fixed password for oracle and grid from defaults (oravirt#409)"
security_fixes:
- "orahost: Removed fixed password for oracle and grid from defaults (oravirt#409)"
6 changes: 0 additions & 6 deletions roles/orahost/README.md
Original file line number Diff line number Diff line change
Expand Up @@ -337,8 +337,6 @@ grid_users:
primgroup: '{{ oracle_group }}'
othergroups: '{{ asmadmin_group }},{{ asmdba_group }},{{ asmoper_group }},{{ dba_group
}}'
passwd:
$6$0xHoAXXF$K75HKb64Hcb/CEcr3YEj2LGERi/U2moJgsCK.ztGxLsKoaXc4UBiNZPL0hlxB5ng6GL.gyipfQOOXplzcdgvD0
```

### host_fs_layout
Expand Down Expand Up @@ -670,8 +668,6 @@ oracle_users:
primgroup: '{{ oracle_group }}'
othergroups: '{{ dba_group }},{{ asmadmin_group }},{{ asmdba_group }},{{ asmoper_group
}},backupdba,dgdba,kmdba,{{ oper_group }}'
passwd:
$6$0xHoAXXF$K75HKb64Hcb/CEcr3YEj2LGERi/U2moJgsCK.ztGxLsKoaXc4UBiNZPL0hlxB5ng6GL.gyipfQOOXplzcdgvD0
```

### os_family_supported
Expand Down Expand Up @@ -804,8 +800,6 @@ transparent_hugepage_disable:
## Open Tasks

- (improvement): SSH-Setup needs a rework...
- (security): remove fixed password from oracle OS-Users
- (security): remove fixed password from grid OS-Users

## Dependencies

Expand Down
4 changes: 0 additions & 4 deletions roles/orahost/defaults/main.yml
Original file line number Diff line number Diff line change
Expand Up @@ -107,23 +107,19 @@ oracle_groups:
- {group: dgdba, gid: 54325}
- {group: kmdba, gid: 54326}

# @todo security: remove fixed password from oracle OS-Users
# @var oracle_users:description: oracle OS-User
oracle_users: # Passwd :Oracle123
- username: oracle
uid: 54321
primgroup: "{{ oracle_group }}"
othergroups: "{{ dba_group }},{{ asmadmin_group }},{{ asmdba_group }},{{ asmoper_group }},backupdba,dgdba,kmdba,{{ oper_group }}"
passwd: "$6$0xHoAXXF$K75HKb64Hcb/CEcr3YEj2LGERi/U2moJgsCK.ztGxLsKoaXc4UBiNZPL0hlxB5ng6GL.gyipfQOOXplzcdgvD0"

# @todo security: remove fixed password from grid OS-Users
# @var grid_users:description: grid OS-User
grid_users:
- username: grid
uid: 54320
primgroup: "{{ oracle_group }}"
othergroups: "{{ asmadmin_group }},{{ asmdba_group }},{{ asmoper_group }},{{ dba_group }}"
passwd: "$6$0xHoAXXF$K75HKb64Hcb/CEcr3YEj2LGERi/U2moJgsCK.ztGxLsKoaXc4UBiNZPL0hlxB5ng6GL.gyipfQOOXplzcdgvD0"

# @var firewall_service:description: >
# Used firewall service in OS. Value depends on used Distribution and version.
Expand Down

0 comments on commit 922936d

Please sign in to comment.