Uploaded image for project: 'Puppet Server'
  1. Puppet Server
  2. SERVER-2760

Update puppetserver CA init code for new CA dir location

    XMLWordPrintable

    Details

    • Type: Task
    • Status: Resolved
    • Priority: Normal
    • Resolution: Done
    • Affects Version/s: None
    • Fix Version/s: SERVER 7.0.0
    • Component/s: None
    • Labels:
    • Template:
    • Team:
      Froyo
    • Story Points:
      2
    • Sprint:
      Froyo 11/02/2020, Froyo - 11/09/2020
    • Release Notes:
      Not Needed
    • Release Notes Summary:
      See SERVER-2896 for release notes.
    • QA Risk Assessment:
      Needs Assessment

      Description

      The easiest way to separate the CA dir from the SSL dir is to create the files in a different location (or migrate them), and then provide a symlink from the old location to the new location. This will prevent users from automatically deleting their CA files, as rm -rf will just unlink the symlink and not follow it to delete the files themselves.

      When puppetserver starts, we should

      • if the CA is not yet initialized, create it in the new location (/etc/puppetlabs/puppetserver/ca) and create a symlink from the configured location to the new one (see SERVER-2895 for similar change to the CLI setup command)

        Attachments

          Issue Links

            Activity

              People

              Assignee:
              justin Justin Stoller
              Reporter:
              maggie Maggie Dreyer
              Votes:
              0 Vote for this issue
              Watchers:
              9 Start watching this issue

                Dates

                Created:
                Updated:
                Resolved:

                  Zendesk Support