Hi, On 02/22/2012 08:58 PM, Jon Davis wrote: > How can I track down where the issue for this is?
it's always troublesome, but the only clean approach I'm aware of is "openssl s_client" and "openssl x509" to carefully compare what the master is presenting when the agent connects to whatever the agent is expecting (i.e. what's cached on agent side). I'd like to stress this: Not everyone is operating under testing conditions. Blasting $ssldir is typically not an option. I know people are trying to be helpful, but puppet authentication is no a good instance to endorse the KISS strategy. Cheers, Felix -- You received this message because you are subscribed to the Google Groups "Puppet Users" group. To post to this group, send email to puppet-users@googlegroups.com. To unsubscribe from this group, send email to puppet-users+unsubscr...@googlegroups.com. For more options, visit this group at http://groups.google.com/group/puppet-users?hl=en.