|
149 | 149 | class { 'puppetdb::server::global':
|
150 | 150 | vardir => $vardir,
|
151 | 151 | confdir => $confdir,
|
152 |
| - puppetdb_user => $puppetdb_user, |
153 | 152 | puppetdb_group => $puppetdb_group,
|
154 | 153 | notify => Service[$puppetdb_service],
|
155 | 154 | }
|
|
190 | 189 | conn_keep_alive => $conn_keep_alive,
|
191 | 190 | conn_lifetime => $conn_lifetime,
|
192 | 191 | confdir => $confdir,
|
193 |
| - puppetdb_user => $puppetdb_user, |
194 | 192 | puppetdb_group => $puppetdb_group,
|
195 | 193 | migrate => $migrate,
|
196 | 194 | notify => Service[$puppetdb_service],
|
|
225 | 223 | conn_keep_alive => $read_conn_keep_alive,
|
226 | 224 | conn_lifetime => $read_conn_lifetime,
|
227 | 225 | confdir => $confdir,
|
228 |
| - puppetdb_user => $puppetdb_user, |
229 | 226 | puppetdb_group => $puppetdb_group,
|
230 | 227 | notify => Service[$puppetdb_service],
|
231 | 228 | database_max_pool_size => $read_database_max_pool_size,
|
|
235 | 232 | file {
|
236 | 233 | $ssl_dir:
|
237 | 234 | ensure => directory,
|
238 |
| - owner => $puppetdb_user, |
| 235 | + owner => 'root', |
239 | 236 | group => $puppetdb_group,
|
240 |
| - mode => '0700'; |
| 237 | + mode => '0755'; |
241 | 238 | $ssl_key_path:
|
242 | 239 | ensure => file,
|
243 | 240 | content => $ssl_key,
|
244 |
| - owner => $puppetdb_user, |
| 241 | + owner => 'root', |
245 | 242 | group => $puppetdb_group,
|
246 |
| - mode => '0600', |
| 243 | + mode => '0640', |
247 | 244 | notify => Service[$puppetdb_service];
|
248 | 245 | $ssl_cert_path:
|
249 | 246 | ensure => file,
|
250 | 247 | content => $ssl_cert,
|
251 |
| - owner => $puppetdb_user, |
| 248 | + owner => 'root', |
252 | 249 | group => $puppetdb_group,
|
253 |
| - mode => '0600', |
| 250 | + mode => '0644', |
254 | 251 | notify => Service[$puppetdb_service];
|
255 | 252 | $ssl_ca_cert_path:
|
256 | 253 | ensure => file,
|
257 | 254 | content => $ssl_ca_cert,
|
258 |
| - owner => $puppetdb_user, |
| 255 | + owner => 'root', |
259 | 256 | group => $puppetdb_group,
|
260 |
| - mode => '0600', |
| 257 | + mode => '0644', |
261 | 258 | notify => Service[$puppetdb_service];
|
262 | 259 | }
|
263 | 260 | }
|
|
275 | 272 |
|
276 | 273 | file { $ssl_key_pk8_path:
|
277 | 274 | ensure => present,
|
278 |
| - owner => $puppetdb_user, |
| 275 | + owner => 'root', |
279 | 276 | group => $puppetdb_group,
|
280 |
| - mode => '0600', |
| 277 | + mode => '0640', |
281 | 278 | notify => Service[$puppetdb_service]
|
282 | 279 | }
|
283 | 280 | }
|
|
298 | 295 | confdir => $confdir,
|
299 | 296 | max_threads => $max_threads,
|
300 | 297 | notify => Service[$puppetdb_service],
|
301 |
| - puppetdb_user => $puppetdb_user, |
302 | 298 | puppetdb_group => $puppetdb_group,
|
303 | 299 | }
|
304 | 300 |
|
|
307 | 303 | certificate_whitelist => $certificate_whitelist,
|
308 | 304 | disable_update_checking => $disable_update_checking,
|
309 | 305 | confdir => $confdir,
|
310 |
| - puppetdb_user => $puppetdb_user, |
311 | 306 | puppetdb_group => $puppetdb_group,
|
312 | 307 | notify => Service[$puppetdb_service],
|
313 | 308 | }
|
|
0 commit comments