In that diagram can you have a HA Master CA setup and HA Agent CA setup
where there is a master and agent CA in each datacenter, but served by a
VIP/Proxy/SRV record? Not exactly sure how CAs work when it comes to
redundancy.
Corey
On Tuesday, June 9, 2015 at 12:07:17 AM UTC-4, Trevor Vaugh
Hi Corey,
That setup should work just fine and be even easier now that everything has
a solid set of certs that don't cross over at all.
If you're using PE, be sure to properly generate your role certificates
that are used by the Console, ActiveMQ, etc...
Trevor
On Mon, Jun 8, 2015 at 10:25 PM,
Has anybody used this setup before? Any caveats?
https://docs.puppetlabs.com/puppet/3.8/reference/config_ssl_external_ca.html#option-3-two-intermediate-cas-issued-by-one-root-ca
Does this still apply when using puppet server 2.1?
Corey
--
You received this message because you are subscribed