forked from ISTI-ansible-roles/ansible-roles
pki-basics: shorten the certificate CN because when we use long hostnames it could overflow.
This commit is contained in:
parent
a9d1585066
commit
d74caa1d87
|
@ -28,7 +28,7 @@
|
||||||
tags: [ 'pki', 'ssl', 'letsencrypt' ]
|
tags: [ 'pki', 'ssl', 'letsencrypt' ]
|
||||||
|
|
||||||
- name: When we are going to install letsencrypt certificates, create a preliminary path and a self signed cert. Now the certificate and private key
|
- name: When we are going to install letsencrypt certificates, create a preliminary path and a self signed cert. Now the certificate and private key
|
||||||
command: openssl req -x509 -newkey rsa:2048 -keyout {{ letsencrypt_acme_user_home | default(omit) }}/keys/fakeselfsignedcert/privkey -out {{ letsencrypt_acme_user_home | default(omit) }}/certs/fakeselfsignedcert/cert -days 365 -nodes -subj '/CN={{ ansible_fqdn }} self signed certificate'
|
command: openssl req -x509 -newkey rsa:2048 -keyout {{ letsencrypt_acme_user_home | default(omit) }}/keys/fakeselfsignedcert/privkey -out {{ letsencrypt_acme_user_home | default(omit) }}/certs/fakeselfsignedcert/cert -days 365 -nodes -subj '/CN={{ ansible_fqdn }} self signed'
|
||||||
args:
|
args:
|
||||||
creates: '{{ letsencrypt_acme_user_home | default(omit) }}/certs/fakeselfsignedcert/cert'
|
creates: '{{ letsencrypt_acme_user_home | default(omit) }}/certs/fakeselfsignedcert/cert'
|
||||||
when:
|
when:
|
||||||
|
|
Loading…
Reference in New Issue