aboutsummaryrefslogtreecommitdiff
diff options
context:
space:
mode:
-rw-r--r--keys/ssh/.empty0
-rw-r--r--keys/ssl/.empty0
-rw-r--r--templates/puppet/fileserver.conf.erb10
3 files changed, 10 insertions, 0 deletions
diff --git a/keys/ssh/.empty b/keys/ssh/.empty
new file mode 100644
index 0000000..e69de29
--- /dev/null
+++ b/keys/ssh/.empty
diff --git a/keys/ssl/.empty b/keys/ssl/.empty
new file mode 100644
index 0000000..e69de29
--- /dev/null
+++ b/keys/ssl/.empty
diff --git a/templates/puppet/fileserver.conf.erb b/templates/puppet/fileserver.conf.erb
index 3046e96..b7ab4bb 100644
--- a/templates/puppet/fileserver.conf.erb
+++ b/templates/puppet/fileserver.conf.erb
@@ -5,3 +5,13 @@
[files]
path /etc/puppet/files
allow *.<%= base_domain %>
+
+# SSL keys
+[ssl]
+ path /etc/puppet/keys/ssl
+ deny *
+
+# SSH keys
+[ssh]
+ path /etc/puppet/keys/ssh/%h
+ allow *