diff options
author | Mike Gabriel <mike.gabriel@das-netzwerkteam.de> | 2022-02-08 11:51:10 +0100 |
---|---|---|
committer | Mike Gabriel <mike.gabriel@das-netzwerkteam.de> | 2022-02-08 11:51:10 +0100 |
commit | 74e2687fa98ea5ba25fbe07c038253d1fc14584e (patch) | |
tree | a390be820f6b3bd91f849acb41415d610e41b186 /code/environments/production/modules/certregen/manifests/client.pp | |
parent | 49c9d906fd74f51484977736d78f16095d4f1a69 (diff) | |
download | puppet.KATH-74e2687fa98ea5ba25fbe07c038253d1fc14584e.tar.gz puppet.KATH-74e2687fa98ea5ba25fbe07c038253d1fc14584e.tar.bz2 puppet.KATH-74e2687fa98ea5ba25fbe07c038253d1fc14584e.zip |
code/environments/production/modules: Drop certregen module again.
Diffstat (limited to 'code/environments/production/modules/certregen/manifests/client.pp')
-rw-r--r-- | code/environments/production/modules/certregen/manifests/client.pp | 28 |
1 files changed, 0 insertions, 28 deletions
diff --git a/code/environments/production/modules/certregen/manifests/client.pp b/code/environments/production/modules/certregen/manifests/client.pp deleted file mode 100644 index 54eb153..0000000 --- a/code/environments/production/modules/certregen/manifests/client.pp +++ /dev/null @@ -1,28 +0,0 @@ -# Distribute the current Puppet CA certificate to client systems. -# -# To ensure the portability of this code and minimize dependencies, this class uses the `file` -# function to distribute the CA certificate instead of having end nodes directly fetch the -# certificate themselves. This means that Puppet installations using a master of master/CA server -# and compile nodes will need to run Puppet on the compile masters before the CA cert can be -# distributed to the agents. -class certregen::client( - $manage_crl = true -) { - file { $::localcacert: - ensure => present, - content => file($settings::cacert, $settings::localcacert, '/dev/null'), - mode => '0644', - } - - $pe_build = getvar('::pe_build') - $crl_managed_by_pe = ($pe_build and versioncmp($pe_build, '3.7.0') >= 0) and is_classified_with('puppet_enterprise::profile::master') - $needs_crl = $manage_crl and !defined(File[$::hostcrl]) and !$crl_managed_by_pe - - if $needs_crl { - file { $::hostcrl: - ensure => present, - content => file($settings::cacrl, $settings::hostcrl, '/dev/null'), - mode => '0644', - } - } -} |