Project

General

Profile

Actions

Feature #37601

closed

Create a way to refresh CA certificates on hosts that are managed by Katello

Added by Shimon Shtein 5 months ago. Updated 3 months ago.

Status:
Closed
Priority:
Normal
Assignee:
Category:
Templates
Target version:
-
Difficulty:
Triaged:
Yes
Fixed in Releases:
Found in Releases:

Description

Currently to refresh CA certs, people are using the /pub/katello-ca-consumer rpm to update the certs. Now that the rpm is deprecated, we need to have a native way to refresh those certificates.

1. We need to have a script that will be downloadable without authentication and via HTTP (not HTTPS). Running this script will refresh CA certs on the host
2. We need to have a REX job that will refresh the certificates as regular SSH script
3. We need to have a REX job that will refresh the certificates as ansible playbook

Actions #1

Updated by The Foreman Bot 5 months ago

  • Status changed from New to Ready For Testing
  • Pull request https://github.com/theforeman/foreman/pull/10208 added
Actions #2

Updated by The Foreman Bot 4 months ago

  • Fixed in Releases 3.12.0 added
Actions #3

Updated by Shimon Shtein 4 months ago

  • Status changed from Ready For Testing to Closed
Actions #4

Updated by Ewoud Kohl van Wijngaarden 3 months ago

  • Triaged changed from No to Yes
Actions

Also available in: Atom PDF