Skip to content

Commit 8947e65

Browse files
author
Tim Meusel
committed
Merge branch 'feature-nginx' of https://github.com/bastelfreak/puppetmodule into feature-nginx
2 parents 157a350 + 04e6866 commit 8947e65

File tree

1 file changed

+5
-3
lines changed

1 file changed

+5
-3
lines changed

templates/puppetmaster

Lines changed: 5 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -1,15 +1,16 @@
11
# define the new unicorn backend
22
upstream puppetmaster_unicorn {
33
server unix:/var/run/puppet/puppetmaster_unicorn.sock fail_timeout=5;
4-
<% backup_upstream.each do |server| -%>
4+
<% @backup_upstream.each do |server| -%>
55
server <%= server %> backup;
66
<% end -%>
77
}
88

99
# define our proxy for breaking up SSL
1010
server {
1111
<% unless @disable_ssl -%>
12-
ssl on;
12+
ssl on;
13+
listen <%= @listen_address %>:<%= @puppet_proxy_port %> ssl;
1314
ssl_certificate /var/lib/puppet/ssl/certs/<%= @fqdn %>.pem;
1415
ssl_certificate_key /var/lib/puppet/ssl/private_keys/<%= @fqdn %>.pem;
1516
ssl_verify_client optional;
@@ -24,8 +25,9 @@ server {
2425
proxy_set_header X-Client-DN $ssl_client_s_dn;
2526
proxy_set_header X-SSL-Subject $ssl_client_s_dn;
2627
proxy_set_header X-SSL-Issuer $ssl_client_i_dn;
28+
<% else -%>
29+
listen <%= @listen_address %>:<%= @puppet_proxy_port %>;
2730
<% end -%>
28-
listen <%= @listen_address %>:<%= @puppet_proxy_port %> ssl;
2931
root /var/empty;
3032
location / {
3133
proxy_pass http://puppetmaster_unicorn;

0 commit comments

Comments
 (0)