1 module Puppet::Parser::Functions
2 newfunction(:gen_tlsa_entry, :type => :rvalue) do |args|
3 certfile = args.shift()
4 hostname = args.shift()
7 if port.kind_of?(Array)
13 if certfile.kind_of?(Array)
20 certs.each do |certfile|
21 res << "; cert #{certfile} for #{hostname}:#{ports}."
23 if File.exist?(certfile)
24 cmd = ['swede', 'create', '--usage=3', '--selector=1', '--mtype=1', '--certificate', certfile, '--port', port.to_s, hostname]
25 IO.popen(cmd, "r") {|i| res << i.read }
27 res << "; certfile #{certfile} did not exist to create TLSA record for #{hostname}:#{port}."
30 cfnew = certfile.gsub(/\.crt$/, '-new.crt')
31 if cfnew != certfile and File.exist?(cfnew)
32 cmd = ['swede', 'create', '--usage=3', '--selector=1', '--mtype=1', '--certificate', cfnew, '--port', port.to_s, hostname]
34 IO.popen(cmd, "r") {|i| new_entry = i.read }
35 if not res.include?(new_entry)