proxies / download: switch to new 2025 wildcard fedoraproject.org cert

Switch from the 2024 one that expires in a bit to a new shiny one that
doesn't expire until next year.

Signed-off-by: Kevin Fenzi <kevin@scrye.com>
This commit is contained in:
Kevin Fenzi
2025-09-25 14:49:51 -07:00
parent 2c70b3b8d8
commit 775d046d8f
5 changed files with 14 additions and 14 deletions

View File

@@ -56,13 +56,13 @@
- selinux
- name: Copy wildcard cert from puppet private
ansible.builtin.copy: src="{{private}}/files/httpd/wildcard-2024.fedoraproject.org.cert" dest=/etc/pki/tls/certs/wildcard-2024.fedoraproject.org.cert owner=root group=root mode=0644
ansible.builtin.copy: src="{{private}}/files/httpd/wildcard-2025.fedoraproject.org.cert" dest=/etc/pki/tls/certs/wildcard-2025.fedoraproject.org.cert owner=root group=root mode=0644
- name: Copy wildcard key from puppet private
ansible.builtin.copy: src="{{private}}/files/httpd/wildcard-2024.fedoraproject.org.key" dest=/etc/pki/tls/private/wildcard-2024.fedoraproject.org.key owner=root group=root mode=0600
ansible.builtin.copy: src="{{private}}/files/httpd/wildcard-2025.fedoraproject.org.key" dest=/etc/pki/tls/private/wildcard-2025.fedoraproject.org.key owner=root group=root mode=0600
- name: Copy intermediate wildcard cert from puppet private
ansible.builtin.copy: src="{{private}}/files/httpd/wildcard-2024.fedoraproject.org.intermediate.cert" dest=/etc/pki/tls/certs/wildcard-2024.fedoraproject.org.intermediate.cert owner=root group=root mode=0644
ansible.builtin.copy: src="{{private}}/files/httpd/wildcard-2025.fedoraproject.org.intermediate.cert" dest=/etc/pki/tls/certs/wildcard-2025.fedoraproject.org.intermediate.cert owner=root group=root mode=0644
- name: Configure httpd dl main conf
ansible.builtin.template: src=httpd/dl.fedoraproject.org.conf dest=/etc/httpd/conf.d/dl.fedoraproject.org.conf