Comment 0 for bug 1318767

Revision history for this message
Trent Geerdes (trent-geerdes) wrote :

On Saucy the apache image element check of the SSL cert fails every run of os-refresh-config though it checks out fine with command us ran manually on node.

dib-run-parts Mon May 12 18:19:45 UTC 2014 Running /opt/stack/os-config-refresh/post-configure.d/15-apache2
+ '[' -f /etc/debian_version ']'
+ openssl_cmd=openssl
+ cert_create_cmd='make-ssl-cert generate-default-snakeoil --force-overwrite'
+ snakeoil_pem_file=/etc/ssl/certs/ssl-cert-snakeoil.pem
+ '[' -f /etc/ssl/certs/ssl-cert-snakeoil.pem ']'
+ cert_chk_cmd='openssl x509 -noout -in /etc/ssl/certs/ssl-cert-snakeoil.pem'
+ exit_error=0
++ openssl x509 -noout -in /etc/ssl/certs/ssl-cert-snakeoil.pem
unable to load certificate
140565858223808:error:0906D06C:PEM routines:PEM_read_bio:no start line:pem_lib.c:703:Expecting: TRUSTED CERTIFICATE
+ cmd_run=
+ exit_error=1
+ '[' 1 -ne 0 ']'
+ exit_error=0
++ make-ssl-cert generate-default-snakeoil --force-overwrite
+ cmd_run=
+ '[' 0 -eq 0 ']'
+ cmd='a2enmod ssl'
++ a2enmod ssl
+ cmd_run='Considering dependency setenvif for ssl:
Module setenvif already enabled
Considering dependency mime for ssl:
Module mime already enabled

root@undercloud-undercloud-3r7avkjrnfzt:/var/log/upstart# openssl x509 -noout -in /etc/ssl/certs/ssl-cert-snakeoil.pem
root@undercloud-undercloud-3r7avkjrnfzt:/var/log/upstart#