Issue #1891 has been updated by eric sorenson.

Status changed from Accepted to Duplicate

Closing as a duplicate of #7244, which has a proposed generalized solution 
which supercedes this request; if you're a watcher interested in policy-driven 
certificate signing, please try the code attached there and add your 
feedback/use case to that bug. 
----------------------------------------
Feature #1891: Auto-sign certificates if sent the correct passphrase with the 
certificate request
https://projects.puppetlabs.com/issues/1891#change-83565

Author: Hari Sekhon
Status: Duplicate
Priority: Normal
Assignee: 
Category: SSL
Target version: 
Affected Puppet version: 0.24.6
Keywords: 
Branch: 


Setting an auto-sign passphrase on the puppet CA would allow a completely 
automated build of a new system that has the passphrase embedded in the 
installation script. The request should be able to take the passphrase on the 
command line via a switch.

This offers the best of all worlds, security in not auto-signing just anything, 
but still having ease of use, speed and automation of deployments of new 
systems since you'd no longer need to go to the puppetmaster's CA and manually 
type in to accept pending certificates.


-- 
You have received this notification because you have either subscribed to it, 
or are involved in it.
To change your notification preferences, please click here: 
http://projects.puppetlabs.com/my/account

-- 
You received this message because you are subscribed to the Google Groups 
"Puppet Bugs" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To post to this group, send email to [email protected].
Visit this group at http://groups.google.com/group/puppet-bugs?hl=en.
For more options, visit https://groups.google.com/groups/opt_out.


Reply via email to