Running the element script as root on the node doesn't trigger the cert failure either.
root@overcloud-controller0-jpialqhpnhjq:~# /opt/stack/os-config-refresh/post-configure.d/15-apache2 + '[' -f /etc/debian_version ']' + openssl_cmd=openssl + cert_create_cmd='make-ssl-cert generate-default-snakeoil --force-overwrite' + snakeoil_pem_file=/etc/ssl/certs/ssl-cert-snakeoil.pem + '[' -f /etc/ssl/certs/ssl-cert-snakeoil.pem ']' + cert_chk_cmd='openssl x509 -noout -in /etc/ssl/certs/ssl-cert-snakeoil.pem' + exit_error=0 ++ openssl x509 -noout -in /etc/ssl/certs/ssl-cert-snakeoil.pem + cmd_run= + '[' 0 -ne 0 ']' + '[' 0 -eq 0 ']' + cmd='a2enmod ssl' ++ a2enmod ssl + cmd_run='Considering dependency setenvif for ssl: Module setenvif already enabled Considering dependency mime for ssl: Module mime already enabled Considering dependency socache_shmcb for ssl: Module socache_shmcb already enabled Module ssl already enabled' + '[' 0 -eq 0 ']' + cmd='a2ensite default-ssl' ++ a2ensite default-ssl + cmd_run='Site default-ssl already enabled' + '[' 0 -ne 0 ']' + '[' -f /etc/debian_version ']' + service apache2 reload [ ok ] Reloading web server: apache2.
Running the element script as root on the node doesn't trigger the cert failure either.
root@overcloud- controller0- jpialqhpnhjq: ~# /opt/stack/ os-config- refresh/ post-configure. d/15-apache2 cmd='make- ssl-cert generate- default- snakeoil --force-overwrite' pem_file= /etc/ssl/ certs/ssl- cert-snakeoil. pem certs/ssl- cert-snakeoil. pem ']' cmd='openssl x509 -noout -in /etc/ssl/ certs/ssl- cert-snakeoil. pem' certs/ssl- cert-snakeoil. pem 'Considering dependency setenvif for ssl:
+ '[' -f /etc/debian_version ']'
+ openssl_cmd=openssl
+ cert_create_
+ snakeoil_
+ '[' -f /etc/ssl/
+ cert_chk_
+ exit_error=0
++ openssl x509 -noout -in /etc/ssl/
+ cmd_run=
+ '[' 0 -ne 0 ']'
+ '[' 0 -eq 0 ']'
+ cmd='a2enmod ssl'
++ a2enmod ssl
+ cmd_run=
Module setenvif already enabled
Considering dependency mime for ssl:
Module mime already enabled
Considering dependency socache_shmcb for ssl:
Module socache_shmcb already enabled
Module ssl already enabled'
+ '[' 0 -eq 0 ']'
+ cmd='a2ensite default-ssl'
++ a2ensite default-ssl
+ cmd_run='Site default-ssl already enabled'
+ '[' 0 -ne 0 ']'
+ '[' -f /etc/debian_version ']'
+ service apache2 reload
[ ok ] Reloading web server: apache2.