Fix code block in the new Security:UserManagement section (dsR10, r10)
Change-Id: I8605c99db604f26032dd6ae556fcc6a7193572a1 Signed-off-by: Suzana Fernandes <Suzana.Fernandes@windriver.com>
This commit is contained in:
parent
ba873c4690
commit
32f9681c6a
@ -132,7 +132,7 @@ In the following example, creating end users consists of:
|
||||
|
||||
.. code-block::
|
||||
|
||||
$ sudo sed -i '$ a\\\*;\*;%ABC-EndUsers;Al0000-2400;denyssh' /etc/security/group.conf
|
||||
$ sudo sed -i '$ a\*;*;%ABC-EndUsers;Al0000-2400;denyssh' /etc/security/group.conf
|
||||
|
||||
#. Create a kubernetes namespace for the end user group.
|
||||
|
||||
|
@ -61,10 +61,10 @@ it can create subsequent system administrators and end users.
|
||||
.. code-block::
|
||||
|
||||
# Execute this line only once, on each host
|
||||
$ sudo sed -i '1i auth required `pam_group.so <http://pam_group.so>`__ use_first_pass}' /etc/pam.d/common-auth
|
||||
$ sudo sed -i '1i auth required pam_group.so use_first_pass' /etc/pam.d/common-auth
|
||||
|
||||
# Execute this line for each LDAP group being mapped to 1 or more local Linux groups, on each host
|
||||
$ sudo sed -i '$ a\\\*;\*;%Level1SystemAdmin;Al0000-2400;sys_protected,root,sudo' /etc/security/group.conf
|
||||
$ sudo sed -i '$ a\*;*;%Level1SystemAdmin;Al0000-2400;sys_protected,root,sudo' /etc/security/group.conf
|
||||
|
||||
#. Add full kubernetes authorization privileges to the ``Level1SystemAdmin``
|
||||
|LDAP| group members.
|
||||
|
@ -89,7 +89,8 @@ In the following example, creating other system administrators consists of:
|
||||
|
||||
.. code-block:: none
|
||||
|
||||
$ sudo sed -i '$a\\\*;\*;%Level2SystemAdmin;Al0000-2400;sys_protected,root' /etc/security/group.conf
|
||||
$ sudo sed -i '$ a\*;*;%Level2SystemAdmin;Al0000-2400;sys_protected,root' /etc/security/group.conf
|
||||
|
||||
|
||||
#. Add restricted kubernetes authorization privileges to the
|
||||
``Level2SystemAdmin`` |LDAP| group members.
|
||||
@ -153,7 +154,7 @@ In the following example, creating other system administrators consists of:
|
||||
|
||||
.. code-block:: none
|
||||
|
||||
$ sudo sed -i '$ a\\\*;\*;%Level3SystemAdmin;Al0000-2400;users' /etc/security/group.conf
|
||||
$ sudo sed -i '$ a\*;*;%Level3SystemAdmin;Al0000-2400;users' /etc/security/group.conf
|
||||
|
||||
#. Add 'reader' Kubernetes authorization privileges to the ``Level3SystemAdmin``
|
||||
|LDAP| group members.
|
||||
|
Loading…
x
Reference in New Issue
Block a user