Bug 1041555
Summary: | Pegasus should generate self-signed certificates at first startup rather than rpm %post | ||||||
---|---|---|---|---|---|---|---|
Product: | Red Hat Enterprise Linux 7 | Reporter: | Stephen Gallagher <sgallagh> | ||||
Component: | tog-pegasus | Assignee: | Stephen Gallagher <sgallagh> | ||||
Status: | CLOSED CURRENTRELEASE | QA Contact: | Alois Mahdal <amahdal> | ||||
Severity: | high | Docs Contact: | |||||
Priority: | unspecified | ||||||
Version: | 7.0 | CC: | jscotka, rdoty, sct, tsmetana, vcrhonek | ||||
Target Milestone: | rc | ||||||
Target Release: | --- | ||||||
Hardware: | All | ||||||
OS: | Linux | ||||||
Whiteboard: | |||||||
Fixed In Version: | tog-pegasus-2.12.1-16.el7 | Doc Type: | Bug Fix | ||||
Doc Text: | Story Points: | --- | |||||
Clone Of: | Environment: | ||||||
Last Closed: | 2014-06-13 11:45:16 UTC | Type: | Bug | ||||
Regression: | --- | Mount Type: | --- | ||||
Documentation: | --- | CRM: | |||||
Verified Versions: | Category: | --- | |||||
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |||||
Cloudforms Team: | --- | Target Upstream Version: | |||||
Embargoed: | |||||||
Bug Depends On: | 1032849 | ||||||
Bug Blocks: | 1041552 | ||||||
Attachments: |
|
Description
Stephen Gallagher
2013-12-12 17:12:52 UTC
Created attachment 836380 [details] Move certificate generation to service startup Instead of creating the certificates during RPM installation, we should wait until the first time the service is started. This will behave better in cases where an image is being cloned for VMs. This patch depends on the mini-CA patch for BZ#1032849 (though it would be possible to write a patch that worked with the old self-signed approach as well, if the mini-CA approach is rejected). Pushed Stephen's patch together with one for the bug #1072936. Verified with all supported architectures. This request was resolved in Red Hat Enterprise Linux 7.0. Contact your manager or support representative in case you have further questions about the request. |