- ssids.auto.tfvars: eliminada referencia var.wifi_password_psk (inválida en ficheros tfvars) - main.tf: psk usa each.value.psk si está definido, sino cae en var.wifi_password_psk (TF_VAR_wifi_password_psk desde GitHub Secrets) Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
36 lines
1.1 KiB
HCL
36 lines
1.1 KiB
HCL
# SSIDs wireless - BCN01
|
|
# NOTA: El shared secret de RADIUS NO está aquí.
|
|
# Se pasa como variable de entorno TF_VAR_radius_secret (GitHub secret: RADIUS_SECRET)
|
|
|
|
wireless_ssids = [
|
|
{
|
|
number = 0
|
|
name = "EQT-CORPO"
|
|
enabled = true
|
|
auth_mode = "open"
|
|
wpa_encryption_mode = "WPA3 only"
|
|
splash_page = "Password-protected with custom RADIUS"
|
|
ip_assignment_mode = "Bridge mode"
|
|
use_vlan_tagging = true
|
|
default_vlan_id = 100
|
|
redirect_url = "https://www.adevinta.com"
|
|
radius_servers = [
|
|
{
|
|
host = "15.15.15.15"
|
|
port = 1912
|
|
}
|
|
]
|
|
},
|
|
{
|
|
number = 1
|
|
name = "EQT-GUEST"
|
|
enabled = true
|
|
auth_mode = "psk" # Modo para contraseña compartida
|
|
wpa_encryption_mode = "WPA2 only" # Lo que pediste para compatibilidad
|
|
# psk se inyecta via TF_VAR_wifi_password_psk (GitHub secret WIFI_PASSWORD_PSK)
|
|
ip_assignment_mode = "Bridge mode"
|
|
use_vlan_tagging = true
|
|
default_vlan_id = 101
|
|
}
|
|
]
|