Ask Your Question
0

Puppet Dashboard cert problems with inventory service

asked 2014-12-09 05:58:50 -0500

ProfessorFate gravatar image

Hi All

I've inherited a puppet server from my predecessor and am slowly getting to grips with it. A niggling problem is this error which occurs on Puppet Dashboard, right beneath the inventory heading for a node:

Could not retrieve facts from inventory service: SSL_connect returned=1 errno=0 state=SSLv3 read server certificate B: certificate verify failed

In my auth.conf, I have these entries

path /facts
auth no
method find, search
allow *

path /inventory
auth no
method search
allow mybox.domain

I am somewhat confused since the error suggests SSL is being used whereas the config states not to.

Any ideas where to look to fix this?

Best Wishes, Professor Fate

edit retag flag offensive close merge delete

2 Answers

Sort by ยป oldest newest most voted
1

answered 2014-12-09 11:43:05 -0500

reidmv gravatar image

All communication with the Puppet master uses SSL encryption, and the master server presents an SSL certificate. The auth stanza in auth.conf has to do with whether or not the client is required to present a certificate as well.

The error you're seeing is not that the master is rejecting the client, it is that the client is refusing to connect to the master.

Try checking the ca_certificate_path value in the Dashboard's settings.yml file, and make sure that whatever CA file is specified can be used to verify the certificate presented by the master.

edit flag offensive delete link more
0

answered 2014-12-10 07:47:40 -0500

ProfessorFate gravatar image

Hey, thanks! You put me on the right track. The file cacertificatepath was completely missing, so I just redid that bit from step 3 of the dashboard installation instructions here.

I have no idea why it wasn't there, but hey ho, working now.

Thanks again.

edit flag offensive delete link more

Your Answer

Please start posting anonymously - your entry will be published after you log in or create a new account.

Add Answer

Question Tools

1 follower

Stats

Asked: 2014-12-09 05:58:50 -0500

Seen: 406 times

Last updated: Dec 10 '14