Re: [Puppet Users] Using Puppet's client certificates for Apache, SSLVerifyClient

2010-12-23 Thread Dan Trainor
u also > revoke it, you apache is simply not configured to look at the CRL > (certificate revocation list). > Ohad > > On Wed, Dec 22, 2010 at 11:43 PM, Dan Trainor wrote: >> >> Hi - >> >> I read up on this subject quite a bit, and was able to find a fe

[Puppet Users] Using Puppet's client certificates for Apache, SSLVerifyClient

2010-12-22 Thread Dan Trainor
Hi - I read up on this subject quite a bit, and was able to find a few posts on the mailing list, even found a wiki article. Unfortunately it doesn't quite address what I'm looking to do. >From what I understand, Puppet's client/server authentication system - using SSL - is portable. I believe

Re: [Puppet Users] best way to disable a class

2010-05-03 Thread dan trainor
On Mon, May 3, 2010 at 4:05 PM, Christopher Johnston wrote: > > I figured it out I think by inheriting package::stable and then using the > Package resource (note cap P) to override it. > Thx! > > On Mon, May 3, 2010 at 7:04 PM, Russ Allbery wrote: >> >> Christopher Johnston writes: >> >> > Say

Re: [Puppet Users] ssh::auth server dependency on ~/.ssh and a scoping question

2010-02-25 Thread dan trainor
On Thu, Feb 25, 2010 at 12:52 PM, Patrick wrote: > > On Feb 25, 2010, at 11:23 AM, Marcello de Sousa wrote: > > > Patrick, > > > > If you do that you would put all the public keys together, wouldn't you ? > > That means users would be able to login as any other user. That is of > course > > not w