puppet open source and vmware template

53 views
Skip to first unread message

kaustubh chaudhari

unread,
Nov 29, 2013, 7:08:52 AM11/29/13
to puppet...@googlegroups.com
Hi All,

Fairly new to puppet!

I wanted to include puppet agent in a vmware template, Of course this can be done, but i have a question.

what about the certificates ? all the vms created with that template will have the same certificate. How to fix that?
i am sure there is a solution but i dont know how, can someone put some light/redirect me to the documentation!

Thanks!
Kaustubh

Neil

unread,
Nov 29, 2013, 8:56:18 AM11/29/13
to PuppetList

When you deploy a vm from the template give it a host name.  Then first puppet run will make a new cert. Set puppet master to autosign and you are in business
Neil

--
You received this message because you are subscribed to the Google Groups "Puppet Users" group.
To unsubscribe from this group and stop receiving emails from it, send an email to puppet-users...@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/puppet-users/23cbb03a-1964-4ef5-be6f-e6181b613d4d%40googlegroups.com.
For more options, visit https://groups.google.com/groups/opt_out.

Neil - Puppet List

unread,
Nov 29, 2013, 8:59:59 AM11/29/13
to PuppetList

When you deploy a vm from the template give it a host name.  Then first puppet run will make a new cert. Set puppet master to autosign and you are in business
Neil

On 29 Nov 2013 12:09, "kaustubh chaudhari" <kaus...@gmail.com> wrote:
--

kaustubh chaudhari

unread,
Dec 2, 2013, 7:35:31 AM12/2/13
to puppet...@googlegroups.com, maillis...@iamafreeman.com
Thanks Neil,

Ur answer did make my concepts clear!!!

Thanks again!!

-Kaustubh

Felix Frank

unread,
Dec 2, 2013, 8:13:13 AM12/2/13
to puppet...@googlegroups.com
Please keep in mind that autosign is a very dangerous setting
security-wise. Make sure you are aware of all implications. Secure your
master. Check to see if there is a more robust solution for you.

Regards,
Felix

kaustubh chaudhari

unread,
Dec 2, 2013, 8:28:28 AM12/2/13
to puppet...@googlegroups.com
Hey Felix,

Yep, i understand! autosign is not good for my infrastructure!

Thanks for sharing!!

-Kaustubh

With Warm Regards
Kaustubh.A.Chaudhari
(M)-09373102619


--
You received this message because you are subscribed to a topic in the Google Groups "Puppet Users" group.
To unsubscribe from this topic, visit https://groups.google.com/d/topic/puppet-users/Y0xw-ivFxUU/unsubscribe.
To unsubscribe from this group and all its topics, send an email to puppet-users...@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/puppet-users/529C8769.3020907%40alumni.tu-berlin.de.
Reply all
Reply to author
Forward
0 new messages