2 ## THIS FILE IS UNDER PUPPET CONTROL. DON'T EDIT IT HERE.
3 ## USE: git clone git+ssh://$USER@puppet.debian.org/srv/puppet.debian.org/git/dsa-puppet.git
9 [ 'denis.debian.org', 'geo1.debian.org' ],
10 [ 'denis.debian.org', 'geo2.debian.org' ],
11 [ 'denis.debian.org', 'geo3.debian.org' ]
17 next unless pair.include?(@fqdn)
19 keyname = "tsig-#{pair.join('-')}"
23 key = scope.function_hkdf(['/etc/puppet/secret', "puppet-key-#{keyname}"])
25 lines << "key #{keyname} { algorithm hmac-sha256; secret \"#{key}\"; };"
27 remote_ip = scope.lookupvar('site::allnodeinfo')[other]['ipHostNumber']
29 lines << "server #{r} { keys { #{keyname}; }; };"