Skip to content

Commit 338fd53

Browse files
committed
Add variables for server and client CA certificates
Signed-off-by: Eric D. Helms <ericdhelms@gmail.com>
1 parent b344cdb commit 338fd53

File tree

3 files changed

+8
-4
lines changed

3 files changed

+8
-4
lines changed

src/playbooks/deploy/deploy.yaml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -22,18 +22,18 @@
2222
candlepin_tomcat_certificate: "{{ localhost_certificate }}"
2323
candlepin_client_key: "{{ client_key }}"
2424
candlepin_client_certificate: "{{ client_certificate }}"
25-
foreman_proxy_ca_certificate: "{{ ca_certificate }}"
25+
foreman_proxy_ca_certificate: "{{ client_ca_certificate }}"
2626
foreman_proxy_server_key: "{{ server_key }}"
2727
foreman_proxy_server_certificate: "{{ server_certificate }}"
2828
foreman_proxy_client_key: "{{ client_key }}"
2929
foreman_proxy_client_certificate: "{{ client_certificate }}"
30-
foreman_ca_certificate: "{{ ca_certificate }}"
30+
foreman_ca_certificate: "{{ server_ca_certificate }}"
3131
foreman_client_key: "{{ client_key }}"
3232
foreman_client_certificate: "{{ client_certificate }}"
3333
foreman_oauth_consumer_key: abcdefghijklmnopqrstuvwxyz123456
3434
foreman_oauth_consumer_secret: abcdefghijklmnopqrstuvwxyz123456
35-
httpd_server_ca_certificate: "{{ ca_certificate }}"
36-
httpd_client_ca_certificate: "{{ ca_certificate }}"
35+
httpd_server_ca_certificate: "{{ server_ca_certificate }}"
36+
httpd_client_ca_certificate: "{{ client_ca_certificate }}"
3737
httpd_server_certificate: "{{ server_certificate }}"
3838
httpd_server_key: "{{ server_key }}"
3939
pulp_content_origin: "https://{{ ansible_fqdn }}"

src/vars/default_certificates.yml

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -4,7 +4,9 @@ ca_certificate: "{{ certificates_ca_directory }}/certs/ca.crt"
44
ca_key: "{{ certificates_ca_directory }}/private/ca.key"
55
server_certificate: "{{ certificates_ca_directory }}/certs/{{ ansible_fqdn }}.crt"
66
server_key: "{{ certificates_ca_directory }}/private/{{ ansible_fqdn }}.key"
7+
server_ca_certificate: "{{ certificates_ca_directory }}/certs/ca.crt"
78
client_certificate: "{{ certificates_ca_directory }}/certs/{{ ansible_fqdn }}-client.crt"
89
client_key: "{{ certificates_ca_directory }}/private/{{ ansible_fqdn }}-client.key"
10+
client_ca_certificate: "{{ certificates_ca_directory }}/certs/ca.crt"
911
localhost_key: "{{ certificates_ca_directory }}/private/localhost.key"
1012
localhost_certificate: "{{ certificates_ca_directory }}/certs/localhost.crt"

src/vars/installer_certificates.yml

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -4,7 +4,9 @@ ca_certificate: "/root/ssl-build/katello-default-ca.crt"
44
ca_key: "/root/ssl-build/katello-default-ca.key"
55
server_certificate: "/root/ssl-build/{{ ansible_fqdn }}/{{ ansible_fqdn }}-apache.crt"
66
server_key: "/root/ssl-build/{{ ansible_fqdn }}/{{ ansible_fqdn }}-apache.key"
7+
server_ca_certificate: "/root/ssl-build/katello-server-ca.crt"
78
client_certificate: "/root/ssl-build/{{ ansible_fqdn }}/{{ ansible_fqdn }}-foreman-client.crt"
89
client_key: "/root/ssl-build/{{ ansible_fqdn }}/{{ ansible_fqdn }}-foreman-client.key"
10+
client_ca_certificate: "{{ ca_certificate }}"
911
localhost_key: "/root/ssl-build/localhost/localhost-tomcat.key"
1012
localhost_certificate: "/root/ssl-build/localhost/localhost-tomcat.crt"

0 commit comments

Comments
 (0)