|
87 | 87 | if $ensure == 'present' { |
88 | 88 | file { "${name}_pub": |
89 | 89 | ensure => $ensure, |
90 | | - owner => 0, |
91 | | - group => 0, |
| 90 | + owner => $ssh::server::config_user, |
| 91 | + group => $ssh::server::config_group, |
92 | 92 | mode => '0644', |
93 | 93 | path => "${ssh::server::sshd_dir}/${name}.pub", |
94 | 94 | source => $manage_pub_key_source, |
|
98 | 98 |
|
99 | 99 | file { "${name}_priv": |
100 | 100 | ensure => $ensure, |
101 | | - owner => 0, |
| 101 | + owner => $ssh::server::host_priv_key_user, |
102 | 102 | group => $ssh::server::host_priv_key_group, |
103 | 103 | mode => $ssh::server::host_priv_key_mode, |
104 | 104 | path => "${ssh::server::sshd_dir}/${name}", |
|
110 | 110 | } else { |
111 | 111 | file { "${name}_pub": |
112 | 112 | ensure => $ensure, |
113 | | - owner => 0, |
114 | | - group => 0, |
| 113 | + owner => $ssh::server::config_user, |
| 114 | + group => $ssh::server::config_group, |
115 | 115 | mode => '0644', |
116 | 116 | path => "${ssh::server::sshd_dir}/${name}.pub", |
117 | 117 | notify => Class['ssh::server::service'], |
118 | 118 | } |
119 | 119 |
|
120 | 120 | file { "${name}_priv": |
121 | 121 | ensure => $ensure, |
122 | | - owner => 0, |
| 122 | + owner => $ssh::server::host_priv_key_user, |
123 | 123 | group => $ssh::server::host_priv_key_group, |
124 | 124 | mode => $ssh::server::host_priv_key_mode, |
125 | 125 | path => "${ssh::server::sshd_dir}/${name}", |
|
132 | 132 | if $ensure == 'present' { |
133 | 133 | file { "${name}_cert": |
134 | 134 | ensure => $ensure, |
135 | | - owner => 0, |
136 | | - group => 0, |
| 135 | + owner => $ssh::server::config_user, |
| 136 | + group => $ssh::server::config_group, |
137 | 137 | mode => '0644', |
138 | 138 | path => "${ssh::server::sshd_dir}/${name}-cert.pub", |
139 | 139 | source => $manage_cert_source, |
|
143 | 143 | } else { |
144 | 144 | file { "${name}_cert": |
145 | 145 | ensure => $ensure, |
146 | | - owner => 0, |
147 | | - group => 0, |
| 146 | + owner => $ssh::server::config_user, |
| 147 | + group => $ssh::server::config_group, |
148 | 148 | mode => '0644', |
149 | 149 | path => "${ssh::server::sshd_dir}/${name}-cert.pub", |
150 | 150 | notify => Class['ssh::server::service'], |
|
0 commit comments