HAProxy: Make certmonger bundle the cert and key on renewal
authorJuan Antonio Osorio Robles <jaosorior@redhat.com>
Wed, 23 Aug 2017 09:20:20 +0000 (12:20 +0300)
committerEmilien Macchi <emilien@redhat.com>
Wed, 30 Aug 2017 15:56:50 +0000 (15:56 +0000)
commiteae8fb5186369e53da3d9003cb0161c518f1188a
tree5af32dd9aa27d169528b937e7615e05104aee566
parentaaeace8c72ad7e9ea540c7055f0e16e2ed797f58
HAProxy: Make certmonger bundle the cert and key on renewal

the postsave command is ran by certmonger when a certificate is
requested (which will happen on certificate renewal). The previous
command given didn't take into account the file that haproxy expects,
which is a bundled PEM file with both the certificate and the key. Thus,
certmonger would have never generated a new bundle that haproxy would
use, resulting in haproxy always having an old bundle after certificate
expiration.

This fixes that.

Change-Id: Idb650d35f56abaf6a17e17794a068dd5933e6a62
Closes-Bug: #1712514
(cherry picked from commit e1791a37d557b14bb8f833363cabe5c98e151548)
manifests/certmonger/haproxy.pp