Issue #1418 has been reported by digant.

----------------------------------------
Bug #1418: Puppetmasters don't honor cert revocation list
http://reductivelabs.com/redmine/issues/show/1418

Author: digant
Status: Unreviewed
Priority: Normal
Assigned to: 
Category: 
Target version: 
Keywords: 
Complexity: Unknown
Patch: None
Affected version: 0.24.4


Steps to reproduce:

Assume puppetmaster and puppetca are two different machines.

# client.example.com gets cert from puppetca and can pull catalog from 
puppetmaster.example.com
# On puppetca.example.com, run puppetca revoke client.example.com
# Copy ca_crl.pem from puppetca.example.com to puppetmaster.example.com
# Confirm puppet.conf has set cacrl to point to the ca_crl.pem file and restart 
puppetmaster on puppetmaster.example.com
# Run puppet client again on client.example.com.  It will still pull catalog 
and run just fine.



----------------------------------------
You have received this notification because you have either subscribed to it, 
or are involved in it.
To change your notification preferences, please click here: 
http://reductivelabs.com/redmine/my/account

--~--~---------~--~----~------------~-------~--~----~
You received this message because you are subscribed to the Google Groups 
"Puppet Bugs" group.
To post to this group, send email to [email protected]
To unsubscribe from this group, send email to [EMAIL PROTECTED]
For more options, visit this group at 
http://groups.google.com/group/puppet-bugs?hl=en
-~----------~----~----~----~------~----~------~--~---

Reply via email to