Red Hat Bugzilla – Bug 1283414
rhel-osp-director: 8.0 - not possible to deploy undercloud with SSL.
Last modified: 2016-04-07 17:43:07 EDT
rhel-osp-director: 8.0 - not possible to deploy undercloud with SSL. Environment: instack-undercloud-2.1.3-1.el7ost.noarch Need to add the ability to deploy undercloud with SSL.
allow dnsmasq_t default_t:dir read; You need to relabel tftpboot. `restorecon -Rv /tftpboot`
Should be part of global SSL work targeted for OSP8.
The labeling here will be fixed by bz#1280083. It needs to be handled in puppet. *** This bug has been marked as a duplicate of bug 1280083 ***
Let's keep this open and have the two different scenarios tested, even though the fix is the same.
There is no undercloud_service_certificate directive in undercloud.conf.
Undercloud ssl is merged to upstream master. Needs a backport to stable/liberty, and then will need a new downstream package build to pick up the changes for OSP 8.
Ben, can we update this BZ maybe? It seems your upstream patch has been merged.
It looks like the fixed build is available in the latest puddle, so this should be ready for QA.
Verified: Environment: instack-undercloud-2.2.2-2.el7ost.noarch Was able to deploy undercloud with SSL.
Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://rhn.redhat.com/errata/RHEA-2016-0604.html