diff options
author | Lukas Bezdicka <lbezdick@redhat.com> | 2017-04-13 19:21:45 +0200 |
---|---|---|
committer | Lukas Bezdicka <lbezdick@redhat.com> | 2017-04-18 17:07:46 +0200 |
commit | 9e729c0db22865d036860346eb6b81c4c2108719 (patch) | |
tree | 384ab7e5fa29d593e93f6df49701ee56278c6545 /releasenotes/notes | |
parent | de791082c75d687dc5f1cf7bacdd78859edb475a (diff) |
Ensure we configure ssl.conf
Every time we call apache module regardless of using SSL we have to
configure mod_ssl from puppet-apache or we'll hit issue during package
update. File /etc/httpd/conf.d/ssl.conf from mod_ssl package contains
Listen 443 while apache::mod::ssl just configures SSL bits but does not
add Listen. If the apache::mod::ssl is not included the ssl.conf file is
removed and recreated during mod_ssl package update. This causes
conflict on port 443.
Change-Id: Ic5a0719f67d3795a9edca25284d1cf6f088073e8
Related-Bug: 1682448
Resolves: rhbz#1441977
Diffstat (limited to 'releasenotes/notes')
-rw-r--r-- | releasenotes/notes/ensure-ssl-conf-2f32c6ead6f3bb0e.yaml | 10 |
1 files changed, 10 insertions, 0 deletions
diff --git a/releasenotes/notes/ensure-ssl-conf-2f32c6ead6f3bb0e.yaml b/releasenotes/notes/ensure-ssl-conf-2f32c6ead6f3bb0e.yaml new file mode 100644 index 0000000..92f2360 --- /dev/null +++ b/releasenotes/notes/ensure-ssl-conf-2f32c6ead6f3bb0e.yaml @@ -0,0 +1,10 @@ +--- +fixes: + - | + With having package mod_ssl by default installed in images we introduced + issue with mod_ssl package update. In case of SSL not being used or + provided by HAproxy the puppet-apache module by default purges the + ssl.conf file. The package update then recreates the file with default + Listen 443 option. This causes conflict on 443 port during httpd restart. + If we include ::apache::mod::ssl the ssl.conf file will be configured and + the Listen option will be used only if there is vhost set to use SSL. |