Uploaded image for project: 'Puppet'
  1. Puppet
  2. PUP-9478

puppet generate certificate gives linux permissions to ssldir

    Details

    • Type: Bug
    • Status: Closed
    • Priority: Normal
    • Resolution: Won't Fix
    • Affects Version/s: PUP 5.5.3
    • Fix Version/s: None
    • Component/s: Windows
    • Labels:
      None
    • Template:
      PUP Bug Template
    • Team:
      Puppet Romania
    • Sprint:
      PR - Triage
    • Method Found:
      Needs Assessment
    • QA Risk Assessment:
      Needs Assessment

      Description

      Running `puppet certificate generate --ca-location remote $hostname`, where $hostname is the FQDN of the node, gives ssldir, as well as other files on Windows Linux-style permissions, breaking puppet.

       

      The puppet certificate command does request and deliver the correct certificate, but the puppet agent can not open and read them:

       

      // PS C:\Windows\system32> puppet agent -v
       Error: Could not request certificate: Permission denied @ rb_sysopen - C:/ProgramData/PuppetLabs/puppet/etc/ssl/private_keys/HOSTNAME.pem
      

       

      In addition, the cache folder in vardir has broken permissions:

       

      // Error: Transaction store file C:/ProgramData/PuppetLabs/puppet/cache/state/transactionstore.yaml is corrupt (Permission denied @ rb_sysopen - C:/ProgramData/PuppetLabs/puppet/cache/state/transactionstore.yaml); replacing
       Wrapped exception:
       Permission denied @ rb_sysopen - C:/ProgramData/PuppetLabs/puppet/cache/state/transactionstore.yaml```
      ```Error: Could not send report: ReplaceFile(C:/ProgramData/PuppetLabs/puppet/cache/state/last_run_report.yaml, C:/ProgramData/PuppetLabs/puppet/cache
       /state/last_run_report.yaml20190206-3632-7u91t6): Access is denied.
      

       

        Attachments

          Activity

            jsd-sla-details-panel

              People

              • Assignee:
                Unassigned
                Reporter:
                nickgw Nick GW
              • Votes:
                0 Vote for this issue
                Watchers:
                5 Start watching this issue

                Dates

                • Created:
                  Updated:
                  Resolved: