From b8dc9ea5600e31fd08b569b45bc2d999f2aee9b2 Mon Sep 17 00:00:00 2001 From: Jason Ertel Date: Wed, 23 Aug 2023 17:50:08 -0400 Subject: [PATCH] cert work --- salt/ssl/init.sls | 12 +++++++++++- 1 file changed, 11 insertions(+), 1 deletion(-) diff --git a/salt/ssl/init.sls b/salt/ssl/init.sls index 9ff3a3a6d..80164c622 100644 --- a/salt/ssl/init.sls +++ b/salt/ssl/init.sls @@ -36,7 +36,10 @@ include: {% set ca_server = global_ca_server[0] %} {% endif %} - +cacertdir: + file.directory: + - name: /etc/pki/tls/certs + - makedirs: True # Trust the CA trusttheca: @@ -44,6 +47,13 @@ trusttheca: - name: /etc/pki/tls/certs/intca.crt - text: {{ trusttheca_text }} +{% if GLOBALS.os_family == 'Debian' %} +symlinkca: + file.symlink: + - source: /etc/pki/tls/certs/intca.crt + - name: /etc/ssl/certs/intca.crt +{% end %} + # Install packages needed for the sensor m2cryptopkgs: pkg.installed: