Uploaded image for project: 'Satellite'
  1. Satellite
  2. SAT-34268

[RFE] Renew the Puppet CA and Puppet Client certificates for Red Hat Satellite automatically before they expire

XMLWordPrintable

    • Icon: Feature Request Feature Request
    • Resolution: Unresolved
    • Icon: Normal Normal
    • None
    • None
    • Puppet
    • False
    • sat-endeavour
    • None
    • None
    • None
    • None

      Problem Statement
      2. What is the nature and description of the request?

      • To renew Puppet CA and Puppet Client certificates currently a manual procedure in https://access.redhat.com/solutions/3549001
      • The customer would like to have these renewed automatically like we do it in RHEL Identity Management

      3. Why does the customer need this? (List the business requirements here)

      • The manual procedure is time consuming and prone to error
      • An automatic renewal would ease operations
        User Experience & Workflow

      The user does not have to renew the certs manually as they are renewed automatically.
      Some ideas:

      • Use something like certmonger
      • Use an ACME based solution to renew certs automatically
        Requirements
      • Auto-renewal for Puppet certs

      Business Impact

      • What would happen if the inclusion of this feature wasn’t undertaken?
        • We keep status quo
      • Would any projects at Red Hat be negatively affected? --> No.
      • By shipping the feature we could reduce operational efforts and increase customer experience

              Unassigned Unassigned
              rhn-support-jkastnin Joerg Kastning
              Votes:
              0 Vote for this issue
              Watchers:
              4 Start watching this issue

                Created:
                Updated: