Jira (PUP-8448) "puppet cert clean" only works if at least one cert has already been signed

2 views
Skip to first unread message

Jacob Helwig (JIRA)

unread,
Feb 9, 2018, 6:04:03 PM2/9/18
to puppe...@googlegroups.com
Jacob Helwig created an issue
 
Puppet / Bug PUP-8448
"puppet cert clean" only works if at least one cert has already been signed
Issue Type: Bug Bug
Assignee: Jacob Helwig
Created: 2018/02/09 3:03 PM
Fix Versions: PUP 4.10.z, PUP 5.3.z, PUP 5.4.z
Priority: Normal Normal
Reporter: Jacob Helwig

PUP-1916 added the ability to clean certificates that have not yet been signed, without having to manually sign/revoke them first. However, this only works if there is at least one signed certificate in the list of certificate names passed to "puppet cert clean".

Add Comment Add Comment
 
This message was sent by Atlassian JIRA (v7.5.1#75006-sha1:7df2574)
Atlassian logo

Jacob Helwig (JIRA)

unread,
Feb 9, 2018, 6:58:02 PM2/9/18
to puppe...@googlegroups.com

Melissa Stone (JIRA)

unread,
Feb 13, 2018, 6:54:03 PM2/13/18
to puppe...@googlegroups.com

Melissa Stone (JIRA)

unread,
Feb 13, 2018, 6:56:03 PM2/13/18
to puppe...@googlegroups.com
Melissa Stone updated an issue
 
Change By: Melissa Stone
Fix Version/s: PUP 5.4.z
Fix Version/s: PUP 5.3.z
Fix Version/s: PUP 4.10.z
Fix Version/s: PUP 5.3.6
Fix Version/s: PUP 4.10.11
Fix Version/s: PUP 5.4.1

Jorie Tappa (JIRA)

unread,
Feb 23, 2018, 11:54:03 AM2/23/18
to puppe...@googlegroups.com

Jacob Helwig (JIRA)

unread,
Feb 23, 2018, 12:04:03 PM2/23/18
to puppe...@googlegroups.com
Jacob Helwig updated an issue
 
Change By: Jacob Helwig
Release Notes Summary: 'puppet cert clean' can now clean certificates even if none of the certificates in the list of certificates it is told to clean have already been signed.
Release Notes: Bug Fix

Eric Delaney (JIRA)

unread,
Mar 12, 2018, 5:10:05 PM3/12/18
to puppe...@googlegroups.com
Eric Delaney assigned an issue to Unassigned
Change By: Eric Delaney
Assignee: Jacob Helwig
This message was sent by Atlassian JIRA (v7.7.1#77002-sha1:e75ca93)
Atlassian logo

Eric Delaney (JIRA)

unread,
Mar 12, 2018, 7:06:04 PM3/12/18
to puppe...@googlegroups.com

Eric Delaney (JIRA)

unread,
Mar 12, 2018, 7:31:03 PM3/12/18
to puppe...@googlegroups.com
Eric Delaney commented on Bug PUP-8448
 
Re: "puppet cert clean" only works if at least one cert has already been signed

Tested on 5.5.x SHA=68d2b2e715fa815623200044a67ce31ce3b4d3ef

[root@c8zt7s780qtaq1h ssl]# puppet cert list
  "viygf9yfieg5dpt.delivery.puppetlabs.net" (SHA256) 1A:B0:5C:6F:75:A2:C1:AD:CA:CF:55:6C:8A:E7:FE:5B:A2:A7:14:0A:1C:67:CD:03:9A:E1:D7:CF:FD:1E:1C:7F
[root@c8zt7s780qtaq1h ssl]# puppet cert clean viygf9yfieg5dpt.delivery.puppetlabs.net
Notice: Removing file Puppet::SSL::CertificateRequest viygf9yfieg5dpt.delivery.puppetlabs.net at '/etc/puppetlabs/puppet/ssl/ca/requests/viygf9yfieg5dpt.delivery.puppetlabs.net.pem'
[root@c8zt7s780qtaq1h ssl]#

John Duarte (JIRA)

unread,
Oct 21, 2019, 10:56:03 AM10/21/19
to puppe...@googlegroups.com
John Duarte updated an issue
 
Change By: John Duarte
QA Risk Assessment: Needs Assessment No Action
Reply all
Reply to author
Forward
0 new messages