[Change Request] Add fedmsg certs for pkgdb

Ricky Elrod codeblock at elrod.me
Thu Dec 20 20:06:43 UTC 2012


On 12/20/2012 02:56 PM, Toshio Kuratomi wrote:
> threebean has added fedmsg hooks for pkgdb.  I'm making a new release for
> stg that includes this.  However, fedmsg needs to have certs installed for
> the app-host combination in order to sign the messages each service emits.
> 
> There's not currently a way to add certs to only stg, the same certs are
> pushed to both stg and production.
> 
> I'd like to create the certs for pkgdb-app* and put them into the repo.
> They will get installed onto both the stg and production servers.  They
> should just be additional certs and thus shouldn't touch the existing cert
> files for other services.  The certs will be unused on production as the
> pkgdb there will not be updated until after freeze.
> 
> Could I get two +1's to go ahead with this?
> 
> -Toshio
> 

+1 since it shouldn't have any user-facing impact and is easy to remove
them if anything goes weird.

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 490 bytes
Desc: OpenPGP digital signature
URL: <http://lists.fedoraproject.org/pipermail/infrastructure/attachments/20121220/1c5e9ab8/attachment.sig>


More information about the infrastructure mailing list