summaryrefslogtreecommitdiff
path: root/recipes/nginx.rb
diff options
context:
space:
mode:
authormo <mokha@cisco.com>2017-07-06 09:08:43 -0600
committermo <mokha@cisco.com>2017-07-06 09:08:43 -0600
commit3eea40076f853622d09042d18a089c504f519053 (patch)
tree20435c0bbf26ae7fe09c309200597e9ef1f8c85a /recipes/nginx.rb
parentfbd0e91ede0127bb16bdf57175a3d66752c46829 (diff)
renew certificates.HEADmaster
Diffstat (limited to 'recipes/nginx.rb')
-rw-r--r--recipes/nginx.rb13
1 files changed, 1 insertions, 12 deletions
diff --git a/recipes/nginx.rb b/recipes/nginx.rb
index f4df99e..3ee73fa 100644
--- a/recipes/nginx.rb
+++ b/recipes/nginx.rb
@@ -13,18 +13,7 @@ template "/etc/nginx/nginx.conf" do
notifies :restart, 'service[nginx]'
end
-file "/etc/ssl/certs/#{configuration['domain']}.crt" do
- mode "0644"
- content configuration['ssl']['crt']
- notifies :restart, "service[nginx]"
-end
-
-file "/etc/ssl/private/#{configuration['domain']}.key" do
- mode "0644"
- content configuration['ssl']['key']
- notifies :restart, "service[nginx]"
-end
-
+execute "certbot renew"
execute "cd /etc/ssl/certs && openssl dhparam -out dhparam.pem 2048" do
not_if { ::File.exist?('/etc/ssl/certs/dhparam.pem') }
notifies :restart, "service[nginx]"