Comment 7 for bug 1528622

Revision history for this message
Mikhail Samoylov (msamoylov) wrote :

Steps for verification:
1. Deploy any env
2. On any node generate SSL key and cert:
 openssl req -newkey rsa:2048 -nodes -keyout domain.key -x509 -days 365 -out domain.crt
For fqdn in cert you must use node hostname
3. Convert cert to pem
openssl pkcs12 -export -in domain.crt -inkey domain.key -out hostname.p12
openssl pkcs12 -in hostname.p12 -nodes -out hostname.pem

4. On any node add to astute.yaml config like this: http://paste.openstack.org/show/487105/
5. Run puppet job:
puppet apply -v /etc/puppet/modules/osnailyfacter/modular/ssl/ssl_keys_saving.pp
6. Run puppet job:
puppet apply -v /etc/puppet/modules/osnailyfacter/modular/ssl/ssl_add_trust_chain.pp

Expected result:
All puppet job finished without errors.