[chef] Re: Re: Re: Re: Re: Re: Re: Re: Re: Re: Re: validation.pem seems to stop working after 24-48 hours.


Chronological Thread 
  • From: Mason Turner < >
  • To: " " < >
  • Cc: " " < >
  • Subject: [chef] Re: Re: Re: Re: Re: Re: Re: Re: Re: Re: Re: validation.pem seems to stop working after 24-48 hours.
  • Date: Sat, 28 May 2011 21:31:36 -0400
  • Domainkey-signature: a=rsa-sha1; c=nofws; d=gmail.com; s=gamma; h=references:in-reply-to:mime-version:content-transfer-encoding :content-type:message-id:cc:x-mailer:from:subject:date:to; b=t2VqrgrQpqrobGLglSyslfjV1IHZY4Ipj/1zSJKVFzg5KvF/P9NtKtwrg2y1ivSgMu g6qTtxhITEds2NrqZaCxeHJlERhZ/khQpI6SXSsQlQlMjTBIWa+evjXpZ2aAv6gds8aN rPIP1QkW13GGoccJE3Y2VAGnS/Q5aWjUDU4js=

I worked around this by naming the file validation-server.pem and updating 
the server config as necessary. I'll get a ticket in for that shortly.

-- Mason Turner (mobile)

On May 26, 2011, at 3:01 PM, "Jason J. W. Williams" 
< >
 wrote:

>> You're definitely *not* deleting /etc/chef/validation.pem from the 
>> filesystem of the chef-server box?
>
>> If you delete it, it will be regenerated on the next restart.
> 
> Since I wasn't doing it, I tried stopping the chef-client on the
> server for 48 hours, and low and behold the problem went away. Thank
> you for your comment above, it made me go through the run list and I
> found the chef::delete_validation recipe was getting run. I didn't
> realize deleting validation.pem on the chef-server would cause a
> regeneration...figured the private key was only used by the
> chef-client. Thank you for your patience and help.
> 
> -J



Archive powered by MHonArc 2.6.16.

§