Version:  Puppet 5.5

We have an open source puppet environment which has been up for almost 5 
years and certs are about to expire.  We are running 5.5.  I know it's an 
older version but we are sunsetting puppet by year end.

Setup:
PuppetCA Server
Pupper Master Server 1
Puppet Master Server 2
Puppet Master Server 3
Puppet Master Server 4
PuppetDB Server

The 4 master serves are load balanced using an F5 and DNS name.

I have read many different solutions for this issue and was wondering if 
someone has a step-by-step process to renew not only the CA cert but also 
the puppet master server certs.

I'll be using certregen to deal with the CA certificate but I'm not sure 
when I should clean the puppet master servers cert which also needs a 
dns_alt_names parm (I believe that goes in the master section of 
puppet.conf) and then run puppet agent -t command to create a new puppet 
master server cert.

-- 
You received this message because you are subscribed to the Google Groups 
"Puppet Users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to puppet-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/puppet-users/d9ae867b-fd23-46e8-ad57-410ea585d375n%40googlegroups.com.

Reply via email to