Sha256: 8cd7bcdc5bdb5a8d7583b9c1d79229867c7a5f563984b4f08836234406214fe1

Contents?: true

Size: 1.32 KB

Versions: 116

Compression:

Stored size: 1.32 KB

Contents

require 'puppet/ssl'
require 'puppet/ssl/certificate'

# Keep track of all of our known certificates.
class Puppet::SSL::Inventory
  attr_reader :path

  # Add a certificate to our inventory.
  def add(cert)
    cert = cert.content if cert.is_a?(Puppet::SSL::Certificate)
    Puppet.settings.setting(:cert_inventory).open("a") do |f|
      f.print format(cert)
    end
  end

  # Format our certificate for output.
  def format(cert)
    iso = '%Y-%m-%dT%H:%M:%S%Z'
    "0x%04x %s %s %s\n" % [cert.serial,  cert.not_before.strftime(iso), cert.not_after.strftime(iso), cert.subject]
  end

  def initialize
    @path = Puppet[:cert_inventory]
  end

  # Rebuild the inventory from scratch.  This should happen if
  # the file is entirely missing or if it's somehow corrupted.
  def rebuild
    Puppet.notice "Rebuilding inventory file"

    Puppet.settings.setting(:cert_inventory).open('w') do |f|
      Puppet::SSL::Certificate.indirection.search("*").each do |cert|
        f.print format(cert.content)
      end
    end
  end

  # Find all serial numbers for a given certificate. If none can be found, returns
  # an empty array.
  def serials(name)
    return [] unless Puppet::FileSystem.exist?(@path)

    File.readlines(@path).collect do |line|
      /^(\S+).+\/CN=#{name}$/.match(line)
    end.compact.map { |m| Integer(m[1]) }
  end

end

Version data entries

116 entries across 116 versions & 2 rubygems

Version Path
puppet-retrospec-1.5.0 vendor/gems/puppet-4.5.2/lib/puppet/ssl/inventory.rb
puppet-retrospec-1.4.1 vendor/gems/puppet-4.5.2/lib/puppet/ssl/inventory.rb
puppet-retrospec-1.4.0 vendor/gems/puppet-4.5.2/lib/puppet/ssl/inventory.rb
puppet-retrospec-1.3.2 vendor/gems/puppet-4.5.2/lib/puppet/ssl/inventory.rb
puppet-4.9.4 lib/puppet/ssl/inventory.rb
puppet-4.9.4-x86-mingw32 lib/puppet/ssl/inventory.rb
puppet-4.9.4-x64-mingw32 lib/puppet/ssl/inventory.rb
puppet-4.9.4-universal-darwin lib/puppet/ssl/inventory.rb
puppet-retrospec-1.3.1 vendor/gems/puppet-4.5.2/lib/puppet/ssl/inventory.rb
puppet-4.9.3 lib/puppet/ssl/inventory.rb
puppet-4.9.3-x86-mingw32 lib/puppet/ssl/inventory.rb
puppet-4.9.3-x64-mingw32 lib/puppet/ssl/inventory.rb
puppet-4.9.3-universal-darwin lib/puppet/ssl/inventory.rb
puppet-4.9.2 lib/puppet/ssl/inventory.rb
puppet-4.9.2-x86-mingw32 lib/puppet/ssl/inventory.rb
puppet-4.9.2-x64-mingw32 lib/puppet/ssl/inventory.rb
puppet-4.9.2-universal-darwin lib/puppet/ssl/inventory.rb
puppet-4.9.1 lib/puppet/ssl/inventory.rb
puppet-4.9.1-x86-mingw32 lib/puppet/ssl/inventory.rb
puppet-4.9.1-x64-mingw32 lib/puppet/ssl/inventory.rb