On Mar 22, 2010, at 3:55 PM, Nicolas Valcárcel Scerpella wrote:

In Ubuntu we would like to work on better integration of puppet as you
know. For the Google Summer of Code i would like to mentor a student to
be able to expand the CSR to be able to accept more information. In
short what we want to do is to be able to generate a token or a
certificate that can be passed to the on demand generated image so that
the puppet client can be autenticated to the server without human
interaction.
I will like to get some advice or ideas from you on how can this be
addressed, or if you have a better idea on how to do that.

Can the CSR contain arbitrary information?

If so, the whole thing should be relatively easy - just look at the code in lib/puppet/ssl/, probably certificate_request.rb; we're using the plain SSL interface.

--
Nature and nature's laws lay hid in night,
God said, "Let Newton be," and all was light.

It did not last; the devil howling "Ho!
Let Einstein be!" restored the status quo.
---------------------------------------------------------------------
Luke Kanies  -|-   http://reductivelabs.com   -|-   +1(615)594-8199

--
You received this message because you are subscribed to the Google Groups "Puppet 
Developers" group.
To post to this group, send email to [email protected].
To unsubscribe from this group, send email to 
[email protected].
For more options, visit this group at 
http://groups.google.com/group/puppet-dev?hl=en.

Reply via email to