From 3143f638159843034f4d6c1aac8177040bfb8768 Mon Sep 17 00:00:00 2001 From: Clark Boylan Date: Fri, 25 Aug 2017 13:17:36 -0700 Subject: [PATCH] Update infracloud-chocolate public ssl cert Our old self signed ssl cert will expire soon. Rather than need to maintain a CA for infracloud or sort out how we want to sign things lets just go ahead and use our snakeoil cert on the controller. The two big drawbacks to this approach are the long length of time this cert is valid for and it forces us to use a single controller host per cloud. Note that private hiera will have to be updated with the private key that corresponds to this (is the private portion of the snake oil cert on controller00.chocolate). Change-Id: Iad87881f47354e013c65866dd0138b6bc1cc7f70 --- hiera/common.yaml | 35 ++++++++++++++++------------------- 1 file changed, 16 insertions(+), 19 deletions(-) diff --git a/hiera/common.yaml b/hiera/common.yaml index 7a9d966c25..489f8a2772 100644 --- a/hiera/common.yaml +++ b/hiera/common.yaml @@ -542,25 +542,22 @@ infracloud_vanilla_ssl_cert_file_contents: | -----END CERTIFICATE----- infracloud_chocolate_ssl_cert_file_contents: | -----BEGIN CERTIFICATE----- - MIIDejCCAmICCQC5PoL9yR09DzANBgkqhkiG9w0BAQsFADB/MQswCQYDVQQGEwJV - UzEOMAwGA1UECAwFVGV4YXMxDzANBgNVBAcMBkF1c3RpbjEdMBsGA1UECgwUT3Bl - blN0YWNrIEZvdW5kYXRpb24xMDAuBgNVBAMMJ2NvbnRyb2xsZXIwMC5jaG9jb2xh - dGUuaWMub3BlbnN0YWNrLm9yZzAeFw0xNjA5MjExMjE2MTRaFw0xNzA5MjExMjE2 - MTRaMH8xCzAJBgNVBAYTAlVTMQ4wDAYDVQQIDAVUZXhhczEPMA0GA1UEBwwGQXVz - dGluMR0wGwYDVQQKDBRPcGVuU3RhY2sgRm91bmRhdGlvbjEwMC4GA1UEAwwnY29u - dHJvbGxlcjAwLmNob2NvbGF0ZS5pYy5vcGVuc3RhY2sub3JnMIIBIjANBgkqhkiG - 9w0BAQEFAAOCAQ8AMIIBCgKCAQEAx+OTENV8ZxJP2n40X/mdGCkOGjNc/34E0YJI - JLtOSbWm4ZCukxDkKaN++YFpaVFXioToymkIlvxLFyNyJnhgc+quq2X6o9+EsZSe - JpjTW2alY0HQs96tONxMih9XlljIkh7EFLz+Vmx2ZhJllr0dhmAy5x4Q1FybeUYU - Qlz8M1JV+FxF1DMv/GGPFy5yZ6uFayRKZcWkUetPsGkbGqUilPgALJwdNQBJ2c5F - 1aGZM/66XdHd3A/SXPi/ftieUzhJKJ/SX2a9iQAenw5t4Fih4hYfC6mBVOip7UoI - gSbD5NzpKQ9YQ4SfpHsIBJasfwD3h0mqYd2AiGv/KW8ScQgsVQIDAQABMA0GCSqG - SIb3DQEBCwUAA4IBAQC6jFz+392DSN0JPGjbvhZmEBEejrP5fyC7PBQmAarnz7RX - hU4QkYnOSg3cspMsUS85OP9xBKqyPKqt1FGp5br+0uvViB6mJVWq01w3oY6kJMmF - a/4Lhzk0ZEvbDg7hkDWujm/VT3XTYg3cvRZk+zozgoEuI71ZWgUgjgxO+cv9x24h - 6jWWnRueSe8K8KD8HdLFVxQY6VRHC1rFT7Weoqhmgta2e5lFiPLg0Yk7wr4zmr2t - /OTQGyKMO1Jv59vLslzoUK3ITRS4acbWYFmgOZDfdGNPAnjJLG+K0uy/yr+SgQ0V - RZ/hy+VdYmEsaUnITtXEHON9vdb7zwUS7R8dHz6F + MIIC9DCCAdygAwIBAgIJAKj4cGAIm3KwMA0GCSqGSIb3DQEBCwUAMDIxMDAuBgNV + BAMTJ2NvbnRyb2xsZXIwMC5jaG9jb2xhdGUuaWMub3BlbnN0YWNrLm9yZzAeFw0x + NjA5MjExNDUwMzZaFw0yNjA5MTkxNDUwMzZaMDIxMDAuBgNVBAMTJ2NvbnRyb2xs + ZXIwMC5jaG9jb2xhdGUuaWMub3BlbnN0YWNrLm9yZzCCASIwDQYJKoZIhvcNAQEB + BQADggEPADCCAQoCggEBAOkbDJhI6kAX2sZi+YRVcU0ePZurpSS1aVJERDp9wVw5 + NIESkPFilb5Ff7NlTkZs0NWSRG62hmf43ea16NpsJP3lbvIawx4iK58BFaFCJw3z + 6J0A1On2oz6+qZ03NZ1CzwWCKlRWD0VpyDBtGXLwElwkS3QP9iFC1WPwBD2Hd1dC + YXZrN0l2wMrRRWHxiIZZaOvt9yntMA/GOGPG3MI3x82mxx3gZtXO8/LvvzN4Bqif + AmAKNdq1I5PQOMr4/j3Vs213MMIMEM9R4GjYoeYhNRQAV8OYvpzPLjdzqVx+5QZk + t3IHlApPjcefFJoGnqpAgUTbiLYqAAKljGF8/MuY848CAwEAAaMNMAswCQYDVR0T + BAIwADANBgkqhkiG9w0BAQsFAAOCAQEAVJo5q1LhVXngTOyqaAmXgrm0PU2Wb5Lr + keZ4JlQjLH9Y6M2JQ5i4ih37DuEOoyvRM48DrEFJ3uF4GCl/QgRd9NpWaqWH+VEu + nhdHkrVRdOVZiqcpPL4D661iUeN0ESxRnhmbGfr6UPFikNKdMuO9Q4n9oN9fm+gR + r9J0ZtHsyJva0C/ll/FXl3eQCx2PXDVRlrpf+0pCZxpSJJvksKFOhNMd8703lTaN + hSjXxXxM4KpXfGZQ8rdvB+TrladcBpRqsaFXN07BRU6OWZ59z6b1KFEV//XOkj8h + osIiNUq7LRJe9znYYeHvQVcp8vQhxBsfgv7IFW89gntNCpq7YITCVQ== -----END CERTIFICATE----- statusbot_auth_nicks: - jeblair