Questo contenuto non è disponibile nella lingua selezionata.
Chapter 8. Using custom SSL certificate for hosts
You can use custom SSL certificate on your hosts to enable encrypted communications between Satellite Server, Capsule Server, and hosts. Before deploying it to your hosts, ensure that you have configured the custom SSL certificate to your Satellite Server.
8.1. Deploying a custom SSL certificate to hosts Copia collegamentoCollegamento copiato negli appunti!
After you configure Satellite to use a custom SSL certificate, you must deploy the certificate to hosts registered to Satellite.
The katello-ca-consumer RPM package and katello-rhsm-consumer script is a deprecated feature. Deprecated functionality is still included in Satellite and continues to be supported. However, it will be removed in a future release of this product and is not recommended for new deployments.
Use Refreshing the self-signed CA certificate on hosts instead.
For the most recent list of major functionality that has been deprecated or removed within Satellite, refer to the Deprecated features section of the Satellite release notes.
Procedure
Update the SSL certificate on each host:
# dnf install http://satellite.example.com/pub/katello-ca-consumer-latest.noarch.rpm
8.2. Resetting custom SSL certificate to default self-signed certificate on hosts Copia collegamentoCollegamento copiato negli appunti!
To reset the custom SSL certificate on your hosts to default self-signed certificate, you must re-register your hosts through Global Registration.
Additional resources
- Section 6.2, “Registering hosts by using global registration”
- Resetting custom SSL certificate to default self-signed certificate on Satellite Server in Installing Satellite Server in a connected network environment
- Resetting custom SSL certificate to default self-signed certificate on Capsule Server in Installing Capsule Server