Bug 1394453 - ospd8 installation documentation issues -- possible execution/procedure related bugs
Summary: ospd8 installation documentation issues -- possible execution/procedure relat...
Keywords:
Status: CLOSED DUPLICATE of bug 1385196
Alias: None
Product: Red Hat OpenStack
Classification: Red Hat
Component: documentation
Version: 9.0 (Mitaka)
Hardware: Unspecified
OS: Unspecified
unspecified
unspecified
Target Milestone: ---
: ---
Assignee: Dan Macpherson
QA Contact: RHOS Documentation Team
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2016-11-12 07:08 UTC by Warren
Modified: 2016-12-12 04:14 UTC (History)
2 users (show)

Fixed In Version:
Doc Type: If docs needed, set a value
Doc Text:
Clone Of:
Environment:
Last Closed: 2016-12-12 04:14:32 UTC
Target Upstream Version:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Red Hat Bugzilla 1385196 0 unspecified CLOSED Documentation: errors wrt configuring TLS/SSL Certificates. 2021-02-22 00:41:40 UTC

Internal Links: 1385196

Description Warren 2016-11-12 07:08:07 UTC
Description of problem:

https://access.redhat.com/documentation/en/red-hat-openstack-platform/8/single/director-installation-and-usage/#appe-SSLTLS_Certificate_Configuration appears to not be correct in a few places.


Version-Release number of selected component (if applicable):


How reproducible:
100% of the time

Steps to Reproduce:
1. Follow the instructions in the doc.

Actual results:

First off, all the issues in bugzilla 1385196 still happen in this case

In addition, the openstack user could not write to /etc/pki/CA/newcerts.
I manually changed its permission to 0777 (probably NOT recommended) just
to work around the problem.

Also, there is a definite documentation error.  The command:

openssl req  -key ca.key.pem -new -x509 -days 7300 -extensions v3_ca -out ca.crt.pem

and the command

openssl ca -config openssl.cnf -extensions v3_req -days 3650 -in server.csr.pem -out server.crt.pem -cert ca.cert.pem

refer to a file as ca.crt.pem and ca.cert.pem -- I think that it should be ca.cert.pem because that's what the openstack undercloud install operation expects later.

Comment 1 Dan Macpherson 2016-12-12 04:14:32 UTC
Hi Warren,

I'm merging this BZ with BZ#1385196 and taking care of it in one go.

Closing this BZ as a duplicate.

*** This bug has been marked as a duplicate of bug 1385196 ***


Note You need to log in before you can comment on or make changes to this bug.