On Tuesday, March 26, 2013, James Turnbull wrote:

> Andy Parker wrote:
> > We've also got djmitche in the office helping jmccune out with SSL
> > certificate chaining so that we can say (and have tested and documented)
> > that puppet really does support certificates that are issued by other
> > systems rather than by the puppet certificate commands.
>
> Does this include "official" support for multiple CAs and CA trust
> chains (a la http://projects.puppetlabs.com/issues/3143?)


We're still sorting out what we can and can not support.  I'm reasonably
confident we will not support every possible configuration, but we will
come away with what is supported and what isn't. We'll also have clear
recommendations.

Multiple, self signed CA's will likely be supported to allow different
authorities for client certificates and server certificates.

Chaining may or may not be supported depending on how far we get.



> Regards
>
> James
>
> --
> James Turnbull
> 1-503-734-8571
> To schedule a meeting with me: http://meetme.so/jamtur01
> Join us at PuppetConf 2013 August 22-23 in San Francisco
> (http://bit.ly/pupconf13)
>
> --
> You received this message because you are subscribed to the Google Groups
> "Puppet Developers" group.
> To unsubscribe from this group and stop receiving emails from it, send an
> email to [email protected] <javascript:;>.
> To post to this group, send email to [email protected]<javascript:;>
> .
> Visit this group at http://groups.google.com/group/puppet-dev?hl=en.
> For more options, visit https://groups.google.com/groups/opt_out.
>
>
>

-- 
You received this message because you are subscribed to the Google Groups 
"Puppet Developers" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To post to this group, send email to [email protected].
Visit this group at http://groups.google.com/group/puppet-dev?hl=en.
For more options, visit https://groups.google.com/groups/opt_out.


Reply via email to