On 05/08/14 01:28 PM, Nan Liu wrote:
> Please don't resign all client certificates. All you need to do is
> recreate a puppet master certificate with dns alt name accepting both
> the old and new puppet master hostname. Because passenger and other
> configuration may already refer to the existing pem file name, it's
> easier to just add the new hostname to the dns_alt_names accept list

ah, thanks a lot for this. I was sure there was a more clever way to do
this :)

-- 
Gabriel Filion

Attachment: signature.asc
Description: OpenPGP digital signature

Reply via email to