puppet ssl bootstrap and cert requests

21 views
Skip to first unread message

Bob Negri

unread,
Apr 26, 2024, 4:01:19 PMApr 26
to Puppet Users
Does 'puppet ssl bootstrap' only result in a new certificate if the existing one is expired?

Currently we have a process that backs up the ssl directory, deletes it, and forces a puppet agent run:

puppet agent -t --tag=nosuchtag

The backing up and deleting of 'ssl' seems over kill but we are trying to renew our certificates monthly. Also, we insert a OTP into the car_attributes.yaml file, and it is rather short lived.

Thanks,
Bob
Reply all
Reply to author
Forward
0 new messages