From c8dda5249aa146239dd681db98da2c273dd07d77 Mon Sep 17 00:00:00 2001 From: varac Date: Mon, 10 Dec 2012 22:54:47 +0100 Subject: updated leap_ca_daemon config file, deploying x509 cert+key --- .../site_ca_daemon/templates/leap_ca.yaml.erb | 31 ++++++++++++++++++++++ 1 file changed, 31 insertions(+) create mode 100644 puppet/modules/site_ca_daemon/templates/leap_ca.yaml.erb (limited to 'puppet/modules/site_ca_daemon/templates/leap_ca.yaml.erb') diff --git a/puppet/modules/site_ca_daemon/templates/leap_ca.yaml.erb b/puppet/modules/site_ca_daemon/templates/leap_ca.yaml.erb new file mode 100644 index 00000000..e0b95278 --- /dev/null +++ b/puppet/modules/site_ca_daemon/templates/leap_ca.yaml.erb @@ -0,0 +1,31 @@ +# +# Default configuration options for LEAP Certificate Authority Daemon +# + +# +# Certificate Authority +# +ca_key_path: "/etc/x509/keys/leap_ca_daemon.key" +ca_key_password: nil +ca_cert_path: "/etc/x509/certs/leap_ca_daemon.crt" + +# +# Certificate pool +# +max_pool_size: 100 +client_cert_lifespan: 2 +client_cert_bit_size: 2024 +client_cert_hash: "SHA256" + +# +# Database +# +db_name: "client_certificates" +couch_connection: + protocol: "https" + host: <%= couchdb_host %> + port: 6984 + username: <%= couchdb_user %> + password: <%= couchdb_password %> + prefix: "" + suffix: "" -- cgit v1.2.3