From 604b89aa80b4fe69641f884234a38f23bbf07218 Mon Sep 17 00:00:00 2001 From: Dennis Ahrens <dennis.ahrens@hs-hannover.de> Date: Wed, 5 Aug 2020 12:32:50 +0200 Subject: [PATCH] SSL certs bundled as requested by haproxy --- deploy/certs.sls | 12 ++++++++++++ 1 file changed, 12 insertions(+) diff --git a/deploy/certs.sls b/deploy/certs.sls index c812a7d..98d8d64 100644 --- a/deploy/certs.sls +++ b/deploy/certs.sls @@ -81,6 +81,18 @@ deploy_cert_{{ name }}_fullchain: - requires: - file: deploy_cert_create_dir - group: deploy_cert_{{ name }}_group +deploy_cert_{{ name }}_fullchain_with_key: + file.managed: + - name: {{ deploy.config.cert_directory }}/{{ name }}.fullchain.key.pem + - user: root + - group: {{ cert_group_name }} + - mode: 640 + - template: jinja + - show_diff: False + - contents: {{ cert.pem.split("\n") + cert.chain.split("\n") + cert.key.split("\n") }} + - requires: + - file: deploy_cert_create_dir + - group: deploy_cert_{{ name }}_group {% endif %} {% if cert.dhparam is defined %} -- GitLab