Project

General

Profile

Download (2.05 KB) Statistics
| Branch: | Tag: | Revision:
97bac87e Eric D. Helms
# Certs Parameters
7f082050 Ivan Necas
class certs::params {
97bac87e Eric D. Helms
if file_exists('/usr/sbin/tomcat') and file_exists('/usr/sbin/tomcat6') {
$tomcat = 'tomcat'
}
else {
$tomcat = 'tomcat6'
}

$log_dir = '/var/log/certs'

4296d7d9 Ivan Nečas
$node_fqdn = $::fqdn

97bac87e Eric D. Helms
$ca_common_name = $::fqdn # we need fqdn as CA common name as candlepin uses it as a ssl cert
4296d7d9 Ivan Nečas
$generate = true
$regenerate = false
$regenerate_ca = false
$deploy = true

76be89b8 Ivan Nečas
$country = 'US'
$state = 'North Carolina'
$city = 'Raleigh'
$org = 'SomeOrg'
$org_unit = 'SomeOrgUnit'
$expiration = '365'
7f082050 Ivan Necas
$ca_expiration = '36500'
97bac87e Eric D. Helms
76be89b8 Ivan Nečas
$nss_db_password_file = '/etc/katello/nss_db_password-file'
$nss_db_dir = '/etc/pki/katello/nssdb'
97bac87e Eric D. Helms
$ssl_pk12_password_file = '/etc/katello/pk12_password-file'

$user_groups = 'foreman'
9501017b Ivan Nečas
$foreman_client_cert = '/etc/foreman/client_cert.pem'
76be89b8 Ivan Nečas
$foreman_client_key = '/etc/foreman/client_key.pem'
$foreman_client_ca = '/etc/foreman/client_ca.pem'
9501017b Ivan Nečas
$foreman_proxy_cert = '/etc/foreman-proxy/ssl_cert.pem'
76be89b8 Ivan Nečas
$foreman_proxy_key = '/etc/foreman-proxy/ssl_key.pem'
$foreman_proxy_ca = '/etc/foreman-proxy/ssl_ca.pem'
9501017b Ivan Nečas
$puppet_client_cert = '/etc/puppet/client_cert.pem'
76be89b8 Ivan Nečas
$puppet_client_key = '/etc/puppet/client_key.pem'
$puppet_client_ca = '/etc/puppet/client_ca.pem'
9501017b Ivan Nečas
$apache_ssl_cert = '/etc/pki/tls/certs/katello-node.crt'
$apache_ssl_key = '/etc/pki/tls/private/katello-node.key'
76be89b8 Ivan Nečas
$apache_ca_cert = '/etc/pki/tls/certs/katello-ca.crt'

$candlepin_certs_storage = '/etc/candlepin/certs'
$candlepin_ca_cert = '/etc/candlepin/certs/candlepin-ca.crt'
$candlepin_ca_key = '/etc/candlepin/certs/candlepin-ca.key'
$candlepin_pki_dir = '/etc/pki/katello'
$candlepin_keystore = '/etc/pki/katello/keystore'
$candlepin_keystore_password_file = '/etc/katello/keystore_password-file'
$candlepin_keystore_password = find_or_create_password($candlepin_keystore_password_file)
$candlepin_certs_dir = '/etc/candlepin/certs'

7f082050 Ivan Necas
}