Joe McDonagh <joseph.e.mcdon...@gmail.com> writes:
> Daniel Pittman wrote:
>
> Hey Daniel, your puppet SSL keys can be used for other services as well.

*nod*  Sadly, we need a whole bunch of different public SSL services,
including SSL services on host names and domains that we operate on the behalf
of clients.

It was, in fact, mostly services like that which I was considering when
I asked the initial question.  So, while reuse of the puppet keys would be
occasionally convenient for low value stuff, it doesn't solve my bigger
problem.

[...]

> How do you currently manage your puppet keys?

Entirely manually, using the puppet CA, because it just works, and because we
don't have any significant cross-over between the internal CA we use and the
places that we run puppet.

        Daniel

-- 
✣ Daniel Pittman            ✉ dan...@rimspace.net            ☎ +61 401 155 707
               ♽ made with 100 percent post-consumer electrons

-- 
You received this message because you are subscribed to the Google Groups 
"Puppet Users" group.
To post to this group, send email to puppet-us...@googlegroups.com.
To unsubscribe from this group, send email to 
puppet-users+unsubscr...@googlegroups.com.
For more options, visit this group at 
http://groups.google.com/group/puppet-users?hl=en.

Reply via email to