File tree Expand file tree Collapse file tree 2 files changed +20
-4
lines changed Expand file tree Collapse file tree 2 files changed +20
-4
lines changed Original file line number Diff line number Diff line change 53
53
{{ intermediate_ca_csr_signed.data.issuing_ca }}
54
54
when :
55
55
- not vault_pki_intermediate_export | bool
56
+ - intermediate_ca_csr.changed
57
+ - intermediate_ca_csr.data is defined
56
58
57
59
- name : " Set Exported Intermediate as signed"
58
60
hashivault_pki_ca_set :
78
80
delegate_to : " {{ vault_pki_write_certificates_host }}"
79
81
when :
80
82
- vault_pki_write_int_ca_to_file | bool
83
+ - intermediate_ca_csr.changed
84
+ - intermediate_ca_csr.data is defined
81
85
82
86
- name : " Write out Intermediate Certs and keys to file"
83
87
copy :
Original file line number Diff line number Diff line change 31
31
vault_unseal_keys : " {{ vault_keys.keys_base64 }}"
32
32
33
33
- name : Configure PKI - create root/intermediate and generate certificates
34
- include_role :
35
- name : vault_pki
36
34
vars :
37
35
vault_pki_certificate_subject :
38
36
- role : ' ServerCert'
68
66
vault_pki_write_pem_bundle : false
69
67
vault_pki_write_root_ca_to_file : true
70
68
vault_token : " {{ vault_keys.root_token }}"
69
+ block :
70
+ - name : Configure PKI - create root/intermediate and generate certificates
71
+ include_role :
72
+ name : vault_pki
73
+
74
+ - name : Configure PKI - create root/intermediate and generate certificates (idempotence test)
75
+ include_role :
76
+ name : vault_pki
71
77
72
78
- name : Configure PKI - generate certificate pem bundle
73
- include_role :
74
- name : vault_pki
75
79
vars :
76
80
vault_pki_certificate_subject :
77
81
- role : ' ServerCert'
89
93
vault_pki_write_certificate_files : true
90
94
vault_pki_write_pem_bundle : true
91
95
vault_token : " {{ vault_keys.root_token }}"
96
+ block :
97
+ - name : Configure PKI - generate certificate pem bundle
98
+ include_role :
99
+ name : vault_pki
100
+
101
+ - name : Configure PKI - generate certificate pem bundle (idempotence test)
102
+ include_role :
103
+ name : vault_pki
92
104
93
105
- name : Validate if certificates exist
94
106
stat :
You can’t perform that action at this time.
0 commit comments