begin new key deploy

This commit is contained in:
Leif Johansson 2017-12-19 13:31:41 +01:00
parent a5489e4669
commit 89169b08b6

View file

@ -229,6 +229,14 @@ class eidas_proxy($version='1.0.0') {
$country = safe_hiera('eidas_proxy_country');
$proxy_service_cookie_encrypt_pw = safe_hiera('proxy_service_cookie_encrypt_pw',NOT_SET);
file {['/etc/eidas-proxy/',"/etc/eidas-proxy/$country"]: ensure => directory } ->
sunet::snippets::secret_file {"/etc/eidas-proxy/$country/metadata.p12":
hiera_key => 'eidas_metadata_key',
base64 => true
} ->
sunet::snippets::secret_file {"/etc/eidas-proxy/$country/proxy.p12":
hiera_key => 'eidas_proxy_key',
base64 => true
} ->
sunet::snippets::secret_file {"/etc/eidas-proxy/$country/nodeKeyStore.jks":
hiera_key => 'eidas_proxy_keystore',
base64 => true