Sha256: 9787e2eb16aec1120f92d79f7540c006879040721fb7b78a61e0abe6d847056f

Contents?: true

Size: 1.42 KB

Versions: 184

Compression:

Stored size: 1.42 KB

Contents

require 'puppet/ssl/base'
require 'puppet/indirector'

# Manage private and public keys as a pair.
class Puppet::SSL::Key < Puppet::SSL::Base
  wraps OpenSSL::PKey::RSA

  extend Puppet::Indirector
  indirects :key, :terminus_class => :file, :doc => <<DOC
    This indirection wraps an `OpenSSL::PKey::RSA object, representing a private key.
    The indirection key is the certificate CN (generally a hostname).
DOC

  # Because of how the format handler class is included, this
  # can't be in the base class.
  def self.supported_formats
    [:s]
  end

  attr_accessor :password_file

  # Knows how to create keys with our system defaults.
  def generate
    Puppet.info "Creating a new SSL key for #{name}"
    @content = OpenSSL::PKey::RSA.new(Puppet[:keylength].to_i)
  end

  def initialize(name)
    super

    if ca?
      @password_file = Puppet[:capass]
    else
      @password_file = Puppet[:passfile]
    end
  end

  def password
    return nil unless password_file and Puppet::FileSystem.exist?(password_file)

    ::File.read(password_file)
  end

  # Optionally support specifying a password file.
  def read(path)
    return super unless password_file

    #@content = wrapped_class.new(::File.read(path), password)
    @content = wrapped_class.new(::File.read(path), password)
  end

  def to_s
    if pass = password
      @content.export(OpenSSL::Cipher::DES.new(:EDE3, :CBC), pass)
    else
      return super
    end
  end
end

Version data entries

184 entries across 184 versions & 2 rubygems

Version Path
puppet-retrospec-1.5.0 vendor/gems/puppet-4.5.2/lib/puppet/ssl/key.rb
puppet-retrospec-1.4.1 vendor/gems/puppet-4.5.2/lib/puppet/ssl/key.rb
puppet-retrospec-1.4.0 vendor/gems/puppet-4.5.2/lib/puppet/ssl/key.rb
puppet-retrospec-1.3.2 vendor/gems/puppet-4.5.2/lib/puppet/ssl/key.rb
puppet-4.9.4 lib/puppet/ssl/key.rb
puppet-4.9.4-x86-mingw32 lib/puppet/ssl/key.rb
puppet-4.9.4-x64-mingw32 lib/puppet/ssl/key.rb
puppet-4.9.4-universal-darwin lib/puppet/ssl/key.rb
puppet-retrospec-1.3.1 vendor/gems/puppet-4.5.2/lib/puppet/ssl/key.rb
puppet-4.9.3 lib/puppet/ssl/key.rb
puppet-4.9.3-x86-mingw32 lib/puppet/ssl/key.rb
puppet-4.9.3-x64-mingw32 lib/puppet/ssl/key.rb
puppet-4.9.3-universal-darwin lib/puppet/ssl/key.rb
puppet-4.9.2 lib/puppet/ssl/key.rb
puppet-4.9.2-x86-mingw32 lib/puppet/ssl/key.rb
puppet-4.9.2-x64-mingw32 lib/puppet/ssl/key.rb
puppet-4.9.2-universal-darwin lib/puppet/ssl/key.rb
puppet-4.9.1 lib/puppet/ssl/key.rb
puppet-4.9.1-x86-mingw32 lib/puppet/ssl/key.rb
puppet-4.9.1-x64-mingw32 lib/puppet/ssl/key.rb