From 3b295ae4e9d8f26deb617439bd696d647e28674a Mon Sep 17 00:00:00 2001 From: Pierre Coimbra Date: Thu, 13 Feb 2020 22:14:52 +0100 Subject: [PATCH] =?UTF-8?q?Mise=20=C3=A0=20jour=20de=20'zone=5Froute/hapro?= =?UTF-8?q?xy.md'?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit --- zone_route/haproxy.md | 9 +++++---- 1 file changed, 5 insertions(+), 4 deletions(-) diff --git a/zone_route/haproxy.md b/zone_route/haproxy.md index 45ba500..80487df 100644 --- a/zone_route/haproxy.md +++ b/zone_route/haproxy.md @@ -207,14 +207,15 @@ certbot certonly --webroot -w /home/hasync/letsencrypt-requests/ -d sub.sessionk Voici un script pour mettre en place les certificats Let's Encrypt au bon endroit qui s'occupe de propager les certificats sur l'autre container. ``` +#!/bin/bash rm -f /etc/letsencrypt/live/README rm -rf /etc/ssl/letsencrypt/* for domain in $(ls /etc/letsencrypt/live); do - cat /etc/letsencrypt/live/$domain/privkey.pem /etc/letsencr$ + cat /etc/letsencrypt/live/$domain/privkey.pem /etc/letsencrypt/live/$domain/fullchain.pem > /etc/ssl/letsencrypt/$domain.pem done -scp -r /etc/ssl/letsencrypt/* root@:/etc/ssl/letsencrypt -ssh root@ 'systemctl restart haproxy.service' -systemctl restart haproxy.service +scp -r /etc/ssl/letsencrypt/* root@10.0.0.3:/etc/ssl/letsencrypt +ssh root@10.0.0.3 'systemctl restart haproxy.service' +service haproxy restart ``` ## Mise en place de la haute disponibilité du load balancer