diff options
author | Christian Pointner <equinox@spreadspace.org> | 2019-06-10 13:49:00 +0200 |
---|---|---|
committer | Christian Pointner <equinox@spreadspace.org> | 2019-06-10 13:49:00 +0200 |
commit | 9e0f354a6622a51e113bc7fa08c6f13255d0c042 (patch) | |
tree | c8e6cbca67ce6cd1250510db3cc5bf3f95f177fd /roles | |
parent | liquid-truth: added app user (diff) |
added info to finalize mongodb auth
Diffstat (limited to 'roles')
-rw-r--r-- | roles/elevate/liquidtruth/tasks/mongodb.yml | 14 |
1 files changed, 11 insertions, 3 deletions
diff --git a/roles/elevate/liquidtruth/tasks/mongodb.yml b/roles/elevate/liquidtruth/tasks/mongodb.yml index 8d5180ae..77355f0f 100644 --- a/roles/elevate/liquidtruth/tasks/mongodb.yml +++ b/roles/elevate/liquidtruth/tasks/mongodb.yml @@ -29,6 +29,14 @@ # ignore_errors: true # no_log: true -# - name: initialize authorization -# include_tasks: mongodb_authorization.yml -# when: mongodb_root_user_check +## +## $ mongo +## > use admin +## > db.createUser({ user: "root", pwd: "<secret>", roles: [ { role: "root", db: "admin" } ] }) +## > db.createUser({ user: "backup", pwd: "<secret>", roles: [ { role: "backup", db: "admin" }, { role: "clusterMonitor", db: "admin" } ] }) +## > db.createUser({ user: "lt", pwd: "<secret>", roles: [ { role: "dbOwner", db: "lt" } ] }) +## > exit +## +## edit /etc/mongodb.conf: uncomment 'auth = true' +## Restart mongodb +## |