Let's use the existing pki path

Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com>
This commit is contained in:
Patrick Uiterwijk 2016-04-12 14:16:56 +00:00
parent 46f735aa01
commit 98a1619e01
3 changed files with 9 additions and 2 deletions

View file

@ -1,5 +1,5 @@
- name: Copy over the Fedora Server CA cert
copy: src="{{ private }}/files/fedora-ca.cert" dest=/etc/httpd/pki/fedora-server-ca.cert
copy: src="{{ private }}/files/fedora-ca.cert" dest=/etc/pki/httpd/fedora-server-ca.cert
owner=root group=root mode=0644
notify:
- reload httpd

View file

@ -56,3 +56,10 @@
- httpd
- httpd/proxy
- selinux
- name: Create pki/httpd
file: path=/etc/pki/httpd state=directory
owner=root group=root mode=0600
tags:
- httpd
- httpd/proxy

View file

@ -8,4 +8,4 @@ ProxyPassReverse {{ localpath }} {{ proxyurl }}{{remotepath}}
SSLVerifyClient optional
SSLVerifyDepth 1
SSLCACertificateFile /etc/httpd/pki/fedora-server-ca.cert
SSLCACertificateFile /etc/pki/httpd/fedora-server-ca.cert