From 2300441bacd11748233e1a945a95cca2cc1386c3 Mon Sep 17 00:00:00 2001 From: Peter Palfrader Date: Sun, 31 Jan 2016 17:06:50 +0000 Subject: [PATCH] fix TLSA records with multiple cert locations --- modules/ssl/manifests/service.pp | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/modules/ssl/manifests/service.pp b/modules/ssl/manifests/service.pp index fbca2fae2..da0a97f80 100644 --- a/modules/ssl/manifests/service.pp +++ b/modules/ssl/manifests/service.pp @@ -22,7 +22,7 @@ define ssl::service($ensure = present, $tlsaport = 443, $notify = []) { if $tlsaport > 0 { dnsextras::tlsa_record{ "tlsa-${name}-${tlsaport}": zone => 'debian.org', - certfile => [ "puppet:///modules/ssl/servicecerts/${name}.crt", "puppet:///modules/ssl/from-letsencrypt/${name}.crt" ], + certfile => [ "/etc/puppet/modules/ssl/files/servicecerts/${name}.crt", "/etc/puppet/modules/ssl/files/from-letsencrypt/${name}.crt" ], port => $tlsaport, hostname => "$name", } -- 2.20.1