Hi,

On 02/22/2012 08:58 PM, Jon Davis wrote:
> How can I track down where the issue for this is?

it's always troublesome, but the only clean approach I'm aware of is
"openssl s_client" and "openssl x509" to carefully compare what the
master is presenting when the agent connects to whatever the agent is
expecting (i.e. what's cached on agent side).

I'd like to stress this: Not everyone is operating under testing
conditions. Blasting $ssldir is typically not an option. I know people
are trying to be helpful, but puppet authentication is no a good
instance to endorse the KISS strategy.

Cheers,
Felix

-- 
You received this message because you are subscribed to the Google Groups 
"Puppet Users" group.
To post to this group, send email to puppet-users@googlegroups.com.
To unsubscribe from this group, send email to 
puppet-users+unsubscr...@googlegroups.com.
For more options, visit this group at 
http://groups.google.com/group/puppet-users?hl=en.

Reply via email to