Files @ 8f3635c67934
Branch filter:

Location: majic-ansible-roles/testsite/tls/gnutls_server_certificate.cfg.j2

branko
MAR-129: Minor preparation for updating Ansible version:

- Ignore the pytest_cache directory in Git.
- Updated Ansible to latest 2.3.x version in requirements file.
- Make sure the SSH client private keys have correct permissions when
testing the backup_server role (must be 0600), otherwise we get
errors from SSH due to insecure permissions during testing.
- Updated test for testing installed packages in the wsgi_website
Python virtual environment to test against up-to-date
packages. Might be nice to fix this one with something less hacky in
the long run.
# X.509 Certificate options
#
# DN options

# The organization of the subject.
organization = "Example Inc."

# The country of the subject. Two letter code.
country = SE

# The common name of the certificate owner.
cn = "Exampe Inc. {{ item.name }} Server"

# In how many days, counting from today, this certificate will expire.
expiration_days = 365

# X.509 v3 extensions

# A dnsname in case of a WWW server.
dns_name = "{{ item.hostname }}.{{ testsite_domain }}"

# Whether this certificate will be used for a TLS server
tls_www_server

# Whether this certificate will be used to sign data (needed
# in TLS DHE ciphersuites).
signing_key

# Whether this certificate will be used to encrypt data (needed
# in TLS RSA ciphersuites). Note that it is preferred to use different
# keys for encryption and signing.
encryption_key