diff --git a/ansible/roles/rewrite_map/tasks/main.yaml b/ansible/roles/rewrite_map/tasks/main.yaml index 36c671ac00e2ea03cc9d2515ee8008a4ce263c16..8dab4d55e9e8a5d3f9fb9cb9febe5cd4aeb289b4 100644 --- a/ansible/roles/rewrite_map/tasks/main.yaml +++ b/ansible/roles/rewrite_map/tasks/main.yaml @@ -6,3 +6,11 @@ owner: root group: root dest: /var/www/rewrite_map_config.py + +- name: Replace OOD rewrite condition regex in Apache configuration + ansible.builtin.replace: + path: /etc/httpd/conf.d/front-end.conf + regexp: "RewriteCond %{HTTP:REMOTE_USER} '\\^\\(\\.\\+\\)\\$'" + replace: | + RewriteCond %{HTTP:REMOTE_USER} '([a-zA-Z0-9_.+-]+)@uab.edu$' [OR] + RewriteCond %{HTTP:REMOTE_USER} 'urn:mace:incommon:uab.edu!https://uabgrid.uab.edu/shibboleth!(.+)$'