SSL Module - Fixed it so certs do not keep renewing

This commit is contained in:
Mike Reeves
2018-12-11 12:27:57 -05:00
parent bea4286054
commit dd15a6e31a

View File

@@ -23,7 +23,8 @@ m2cryptopkgs:
- signing_policy: influxdb - signing_policy: influxdb
- public_key: /etc/pki/influxdb.key - public_key: /etc/pki/influxdb.key
- CN: {{ master }} - CN: {{ master }}
- days_remaining: 3000 - days_remaining: 0
- days_valid: 3650
- backup: True - backup: True
- managed_private_key: - managed_private_key:
name: /etc/pki/influxdb.key name: /etc/pki/influxdb.key
@@ -39,7 +40,8 @@ m2cryptopkgs:
- signing_policy: filebeat - signing_policy: filebeat
- public_key: /etc/pki/filebeat.key - public_key: /etc/pki/filebeat.key
- CN: {{ master }} - CN: {{ master }}
- days_remaining: 3000 - days_remaining: 0
- days_valid: 3650
- backup: True - backup: True
- managed_private_key: - managed_private_key:
name: /etc/pki/filebeat.key name: /etc/pki/filebeat.key
@@ -71,7 +73,8 @@ fbcrtlink:
- signing_policy: registry - signing_policy: registry
- public_key: /etc/pki/registry.key - public_key: /etc/pki/registry.key
- CN: {{ master }} - CN: {{ master }}
- days_remaining: 3000 - days_remaining: 0
- days_valid: 3650
- backup: True - backup: True
- managed_private_key: - managed_private_key:
name: /etc/pki/registry.key name: /etc/pki/registry.key
@@ -85,7 +88,8 @@ fbcrtlink:
- signing_policy: masterssl - signing_policy: masterssl
- public_key: /etc/pki/masterssl.key - public_key: /etc/pki/masterssl.key
- CN: {{ master }} - CN: {{ master }}
- days_remaining: 3000 - days_remaining: 0
- days_valid: 3650
- backup: True - backup: True
- managed_private_key: - managed_private_key:
name: /etc/pki/masterssl.key name: /etc/pki/masterssl.key
@@ -99,7 +103,8 @@ fbcrtlink:
- signing_policy: fleet - signing_policy: fleet
- public_key: /etc/pki/fleet.key - public_key: /etc/pki/fleet.key
- CN: {{ master }} - CN: {{ master }}
- days_remaining: 3000 - days_remaining: 0
- days_valid: 3650
- backup: True - backup: True
- managed_private_key: - managed_private_key:
name: /etc/pki/fleet.key name: /etc/pki/fleet.key
@@ -121,7 +126,8 @@ fbcertdir:
- signing_policy: filebeat - signing_policy: filebeat
- public_key: /opt/so/conf/filebeat/etc/pki/filebeat.key - public_key: /opt/so/conf/filebeat/etc/pki/filebeat.key
- CN: {{ master }} - CN: {{ master }}
- days_remaining: 3000 - days_remaining: 0
- days_valid: 3650
- backup: True - backup: True
- managed_private_key: - managed_private_key:
name: /opt/so/conf/filebeat/etc/pki/filebeat.key name: /opt/so/conf/filebeat/etc/pki/filebeat.key