Load Balance Puppet Masters

asked 2014-12-21 19:15:02 -0600

GeneBean gravatar image

I want to setup Puppet using two masters plus an external CA that also happens to be a Foreman server. I have found loads of docs on how to do this if I terminate SSL at the load balancers but none if I want SSL all the way through. I want to do this using F5 load balancers in my production environment and something like haproxy in my test environments that are built via Vagrant. Can anyone help me with this?

1 Answer

answered 2014-12-22 06:59:02 -0600

Have you read the puppetlabs multi master documentation? They also describe the proxy pass directive to be set to forward requests from any of the catalog/file serving masters to the ca. No need to do this on the Loadbalancer.

I have. I deal with certs via the ca_server setting in puppet.conf It doesn't go into any of the info needed for setting up the balancer... it just says you can do it. I have already set my master to have dns_alt_names too

GeneBean gravatar imageGeneBean ( 2014-12-24 21:40:35 -0600 )edit

