Hello
i front puppet masters with haproxy. haproxy handles ssl and requires a valid client cert. requests for a cert go to a seperate ca master.
happy to supply config if you are interested
Neil
I'm trying to setup a Load Balancer in front of some Compile Masters and the Puppet docs says that I can achieve that either with raw TCP proxying, or acting as its own SSL endpoint[1]. If I configure the LB with SSL and SNAT will that work? Is it better to use bridging instead?
--
You received this message because you are subscribed to the Google Groups "Puppet Users" group.
To unsubscribe from this group and stop receiving emails from it, send an email to puppet-users...@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/puppet-users/5ddb5120-4f41-4404-9f91-c177f7651757%40googlegroups.com.
For more options, visit https://groups.google.com/d/optout.