I've got a puppet instance where I'm trying to setup a hiera job to modify 
a file managed by puppet.  The file is /etc/security/access.conf.  The file 
looks like (some details removed):

[root@util nodes]# more hostx.yaml
XXXXX::os::auth::access: '+ : USERACCOUNT : ALL'
XXXXX::os::auth::access: '- :ALL EXCEPT root wheel jboss GGGGG XXXXX-wheel 
XXXXX-local-it XXXXX-net-admin XXXXX-app-admin XXXXX-app-support : ALL 
EXCEPT LOCAL'

[root@util nodes]#

it does not work. Here is a Hiera config that does work:


[root@util nodes]# more  hostz.yaml
XXXXX::os::timezone::zone: 'US/Central'
[root@util nodes]#

If I run puppet agent with a --verbose I get the following (snippet) in the 
output:

Debug: 
/Stage[main]/XXXXX::Os::Auth::App/XXXXX::Os::Auth::Access[app_access]/Concat::Fragment[frag_sec_access_app_access]/File[/opt/puppetlabs/puppet/cache/concat/_etc_security_access.conf/fragments/200_frag_sec_access_app_access]:
 
Adding autorequire relationship with 
File[/opt/puppetlabs/puppet/cache/concat/_etc_security_access.conf/fragments]

The timezone mod works, but not the one for /etc/security/access.conf.  Any 
advice or hints would be appreciated.

TIA

-- 
You received this message because you are subscribed to the Google Groups 
"Puppet Users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To view this discussion on the web visit 
https://groups.google.com/d/msgid/puppet-users/c35b9f02-f52e-41b3-8e68-0d73aef66e8d%40googlegroups.com.
For more options, visit https://groups.google.com/d/optout.

Reply via email to