disable TLSA for api.ftp-master, lists, and udd
authorPeter Palfrader <peter@palfrader.org>
Sun, 9 Oct 2016 11:31:21 +0000 (13:31 +0200)
committerPeter Palfrader <peter@palfrader.org>
Sun, 9 Oct 2016 11:31:21 +0000 (13:31 +0200)
modules/roles/manifests/init.pp
modules/roles/manifests/lists.pp
modules/roles/manifests/udd.pp

index 1d72824..a6e0965 100644 (file)
@@ -58,6 +58,7 @@ class roles {
        if has_role('api.ftp-master') {
                ssl::service { 'api.ftp-master.debian.org':
                        notify  => Exec['service apache2 reload'],
+                       tlsaport => 0,
                }
        }
 
index ace2b25..d1d9d23 100644 (file)
@@ -1,6 +1,7 @@
 class roles::lists {
        ssl::service { 'lists.debian.org':
                notify  => Exec['service apache2 reload'],
+               tlsaport => 0,
        }
 
        dnsextras::tlsa_record{ 'tlsa-mailport':
index fe9abba..ea81cdf 100644 (file)
@@ -1,5 +1,6 @@
 class roles::udd {
        ssl::service { 'udd.debian.org':
                notify  => Exec['service apache2 reload'],
+               tlsaport => 0,
        }
 }