Slackbot
05/22/2023, 4:12 PMrusty
05/22/2023, 4:12 PMrusty
05/22/2023, 4:13 PMcsharpsteen
05/22/2023, 4:14 PMextend.sh
script is worth running directly on the Puppet CA host:
https://github.com/puppetlabs/ca_extend/blob/main/files/extend.sh
That script tries to create a new CA certificate using the same key and doesn't over-write or update anything --- so it should be safe to run even if it doesn't work for some reason.
Although, definitely take a backup of /etc/puppetlabs/puppet/ssl/
as your first action.rusty
05/22/2023, 4:15 PMrusty
05/22/2023, 4:46 PMrusty
05/22/2023, 4:52 PMrusty
05/22/2023, 4:52 PMcsharpsteen
05/22/2023, 6:59 PMpuppet
user --- just readable by it.rusty
05/22/2023, 7:02 PMrusty
05/22/2023, 7:02 PMDr Bunsen Honeydew
05/22/2023, 7:02 PMrusty
05/22/2023, 7:02 PM