File tree Expand file tree Collapse file tree 1 file changed +7
-0
lines changed Expand file tree Collapse file tree 1 file changed +7
-0
lines changed Original file line number Diff line number Diff line change @@ -461,6 +461,7 @@ func keyfileRenewalRequired(ctx context.Context,
461461 case * url.Error :
462462 switch v .Err .(type ) {
463463 case x509.UnknownAuthorityError , x509.CertificateInvalidError :
464+ log .Warn ().Err (v .Err ).Str ("type" , reflect .TypeOf (v .Err ).String ()).Msg ("Validation of server cert failed" )
464465 return true , true
465466 default :
466467 log .Warn ().Err (v .Err ).Str ("type" , reflect .TypeOf (v .Err ).String ()).Msg ("Validation of server cert failed" )
@@ -477,7 +478,12 @@ func keyfileRenewalRequired(ctx context.Context,
477478 continue
478479 }
479480
481+ if ca .Contains (cert ) {
482+ continue
483+ }
484+
480485 if time .Now ().Add (CertificateRenewalMargin ).After (cert .NotAfter ) {
486+ log .Warn ().Msg ("Renewal margin exceeded" )
481487 return true , true
482488 }
483489 }
@@ -512,6 +518,7 @@ func keyfileRenewalRequired(ctx context.Context,
512518 keyfileSha := util .SHA256 (keyfile )
513519
514520 if tls .Result .KeyFile .GetSHA ().Checksum () != keyfileSha {
521+ log .Warn ().Str ("current" , tls .Result .KeyFile .GetSHA ().Checksum ()).Str ("desired" , keyfileSha ).Msg ("Unable to get tls details" )
515522 return true , false
516523 }
517524 }
You can’t perform that action at this time.
0 commit comments