Commit Graph

13 Commits

Author SHA1 Message Date
Ryan Lerch
89f6f1fc32 Fix majority of remaining yamllint warnings and errors
Signed-off-by: Ryan Lerch <rlerch@redhat.com>
2024-11-28 17:31:45 +10:00
Kevin Fenzi
c04dd50fbf certificates: move to new 2024 wildcard fedoraproject.org cert
The old one expires in about 57 days, but might as well just renew it
early and avoid problems later.

Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2024-10-03 16:50:01 -07:00
Kevin Fenzi
47cf07184e wildcard-2023.fedoraproject.org: new wildcard ssl cert
Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2023-01-11 08:48:40 -08:00
Kevin Fenzi
1e712cdc30 Revert "Revert "wildcard-2022.fedoraproject.org cert""
This reverts commit 4430178b29.

It's time to put this back before the cert expires and before we go into
Beta freeze. Hopefully the odd issue with armv7 qemu guests having a
time behind real time is not still happening.
2022-02-21 10:19:17 -08:00
Kevin Fenzi
4430178b29 Revert "wildcard-2022.fedoraproject.org cert"
This reverts commit 57f0d4fdb6.

For an anoying reason, armv7 image builds come up with the time as 10
days ago, which makes this cert invalid. So, move back to the old cert
for a week or so and then switch to the new one again. ;(
2022-01-31 12:39:49 -08:00
Kevin Fenzi
57f0d4fdb6 wildcard-2022.fedoraproject.org cert
This is the renewed version of the old 2020 cert.

Signed-off-by: Kevin Fenzi <kevin@scrye.com>
2022-01-27 10:37:27 -08:00
Stephen Smoogen
37915eaf25 put in patches to use wildcard2020 2020-04-24 21:34:26 +02:00
Michael Scherer
474fac15f0 Add a option to bypass certgetter01 intercept
This permit to move, let's say,  blog to a provider
that do support LE natively, but without needing to
transfer the certificate or anything.

Just set "enable_certgetter: false", run the playbook,
do the http01 negociation, and then switch DNS.
2020-04-24 21:34:09 +02:00
Patrick Uiterwijk
4a385eadba Dont use h2 for (app.)os.stg.fedoraproject.org to fix websockets
Signed-off-by: Patrick Uiterwijk <patrick@puiterwijk.org>
2018-09-12 01:27:39 +02:00
Patrick Uiterwijk
e1bb4e64a4 Do not includeSubDomains for id.fp.o STS
Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com>
2017-11-24 22:49:05 +00:00
Patrick Uiterwijk
863dffdb66 Allow setting up a vhost for certgetter
Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com>
2017-09-09 23:27:40 +00:00
Stephen Smoogen
a59950b213 make a small set of changes before too many 2017-02-01 23:39:23 +00:00
Kevin Fenzi
3b40f60873 Try moving this to defaults instead of vars. 2016-05-26 16:22:55 +00:00