Enable rsync-ssl on keyring.debian.org
authorBastian Blank <waldi@debian.org>
Fri, 3 Feb 2017 17:34:28 +0000 (18:34 +0100)
committerBastian Blank <waldi@debian.org>
Tue, 7 Feb 2017 20:38:29 +0000 (21:38 +0100)
modules/roles/manifests/keyring.pp

index 379fae2..74b3c1f 100644 (file)
@@ -1,10 +1,12 @@
 class roles::keyring {
-       rsync::site { 'keyring':
-               source => 'puppet:///modules/roles/keyring/rsyncd.conf',
+       rsync::site_systemd { 'keyring':
+               source  => 'puppet:///modules/roles/keyring/rsyncd.conf',
+               sslname => 'keyring.debian.org',
        }
 
        ssl::service { 'keyring.debian.org':
-               notify  => Exec['service apache2 reload'],
-               key => true,
+               notify   => Exec['service apache2 reload'],
+               key      => true,
+               tlsaport => [443, 1873],
        }
 }