From 24750a47f7a2ca82acfcf5c91eb70727158d6bc6 Mon Sep 17 00:00:00 2001 From: varac Date: Wed, 31 Oct 2012 13:49:38 +0100 Subject: renamed: ssl.pp -> ssl/generate_cert.pp --- manifests/ssl/generate_cert.pp | 26 ++++++++++++++++++++++++++ 1 file changed, 26 insertions(+) create mode 100644 manifests/ssl/generate_cert.pp (limited to 'manifests/ssl/generate_cert.pp') diff --git a/manifests/ssl/generate_cert.pp b/manifests/ssl/generate_cert.pp new file mode 100644 index 0000000..dae091c --- /dev/null +++ b/manifests/ssl/generate_cert.pp @@ -0,0 +1,26 @@ +class couchdb::ssl::generate_cert { + + package { ['openssl']: + ensure => 'installed', + } + + file { $couchdb::cert_path: + ensure => 'directory', + mode => '0600', + owner => 'couchdb', + group => 'couchdb'; + } + +exec { 'generate-certs': + command => "/usr/bin/openssl req -new -inform PEM -x509 -nodes -days 150 -subj \ +'/C=ZZ/ST=AutoSign/O=AutoSign/localityName=AutoSign/commonName=${::hostname}/organizationalUnitName=AutoSign/emailAddress=AutoSign/' \ +-newkey rsa:2048 -out ${couchdb::cert_path}/couchdb_cert.pem -keyout ${couchdb::cert_path}/couchdb_key.pem", + unless => "/usr/bin/test -f ${couchdb::cert_path}/couchdb_cert.pem && +/usr/bin/test -f ${couchdb::params::cert_path}/couchdb_key.pem", + require => [ + File[$couchdb::params::cert_path], + Exec['make-install'] + ], + notify => Service['couchdb'], + } +} -- cgit v1.2.3