Feature #20679
closed
Revoke host's certificate when host is removed
Added by Mateusz Gozdek over 7 years ago.
Updated over 7 years ago.
Description
As far as I see, right now revoking certificate functionality is only used to revoke certificate before autosing entry is added for host provisioning.
It would be nice if removing Host could also automatically revoke host's certificate.
I was under the impression this happens today. Could you double check that the hist has puppet ca proxy set and your Setting "manage_puppetca" is enabled? If all seems right, please enable debug log level for both Foreman nad Foreman Proxy and upload your production.log and proxy.log after you delete such host.
Right. When `manage_puppetca` is enabled and host is managed, certificate is revoked properly. My bad for not testing properly first. It can be closed now.
- Status changed from New to Rejected
Also available in: Atom
PDF