account for salt 3004 adding new chars to random.get_str

This commit is contained in:
m0duspwnens
2022-01-14 18:02:18 -05:00
parent a46a740170
commit 3bd26f05d4

View File

@@ -1,9 +1,14 @@
{% from 'allowed_states.map.jinja' import allowed_states %} {% from 'allowed_states.map.jinja' import allowed_states %}
{% if sls in allowed_states %} {% if sls in allowed_states %}
{% set kibana_encryptedSavedObjects_encryptionKey = salt['pillar.get']('kibana:secrets:encryptedSavedObjects:encryptionKey', salt['random.get_str'](72)) %} {% set DIGITS = "1234567890" %}
{% set kibana_security_encryptionKey = salt['pillar.get']('kibana:secrets:security:encryptionKey', salt['random.get_str'](72)) %} {% set LOWERCASE = "qwertyuiopasdfghjklzxcvbnm" %}
{% set kibana_reporting_encryptionKey = salt['pillar.get']('kibana:secrets:reporting:encryptionKey', salt['random.get_str'](72)) %} {% set UPPERCASE = "QWERTYUIOPASDFGHJKLZXCVBNM" %}
{% set SYMBOLS = "~!@#$%^&*()-_=+[]|;:,.<>?" %}
{% set CHARS = DIGITS~LOWERCASE~UPPERCASE~SYMBOLS %}
{% set kibana_encryptedSavedObjects_encryptionKey = salt['pillar.get']('kibana:secrets:encryptedSavedObjects:encryptionKey', salt['random.get_str'](72, chars=CHARS)) %}
{% set kibana_security_encryptionKey = salt['pillar.get']('kibana:secrets:security:encryptionKey', salt['random.get_str'](72, chars=CHARS)) %}
{% set kibana_reporting_encryptionKey = salt['pillar.get']('kibana:secrets:reporting:encryptionKey', salt['random.get_str'](72, chars=CHARS)) %}
kibana_pillar_directory: kibana_pillar_directory:
file.directory: file.directory:
@@ -18,11 +23,11 @@ kibana_secrets_pillar:
kibana: kibana:
secrets: secrets:
encryptedSavedObjects: encryptedSavedObjects:
encryptionKey: {{ kibana_encryptedSavedObjects_encryptionKey }} encryptionKey: "{{ kibana_encryptedSavedObjects_encryptionKey }}"
security: security:
encryptionKey: {{ kibana_security_encryptionKey }} encryptionKey: "{{ kibana_security_encryptionKey }}"
reporting: reporting:
encryptionKey: {{ kibana_reporting_encryptionKey }} encryptionKey: "{{ kibana_reporting_encryptionKey }}"
- show_changes: False - show_changes: False
{% else %} {% else %}