Merge remote-tracking branch 'waldi/keyring-ssl'
authorPeter Palfrader <peter@palfrader.org>
Tue, 7 Feb 2017 20:37:19 +0000 (21:37 +0100)
committerPeter Palfrader <peter@palfrader.org>
Tue, 7 Feb 2017 20:37:19 +0000 (21:37 +0100)
* waldi/keyring-ssl:
  Enable rsync-ssl on keyring.debian.org

modules/roles/manifests/keyring.pp

index 379fae2..f6935e1 100644 (file)
@@ -1,10 +1,12 @@
 class roles::keyring {
        rsync::site { 'keyring':
-               source => 'puppet:///modules/roles/keyring/rsyncd.conf',
+               source  => 'puppet:///modules/roles/keyring/rsyncd.conf',
+               sslname => 'keyring.debian.org',
        }
 
        ssl::service { 'keyring.debian.org':
-               notify  => Exec['service apache2 reload'],
-               key => true,
+               notify   => Exec['service apache2 reload'],
+               key      => true,
+               tlsaport => [443, 1873],
        }
 }