PUPPET安装及PUPPET KICK 配置
环境 centos 6.3 64位 puppet puppet-2.6.18
rpm -ivh http://mirrors.sohu.com/fedora-epel/6/x86_64/epel-release-6-8.noarch.rpm
主控端
yum -y install puppet-server
配置好主机名,ip对应关系
service puppetmaster start
当客户端执行完puppet agent --test --server puppet-master后对客户端签名
puppet cert --list //查看未签名的客户端
puppet cert -s 主机名 //服务端对客户端签名
puppet cert -a --list
被控端
yum -y install puppet
配置好主机名,ip对应关系
puppet agent --test --server puppet-master
puppet cert -a
puppet agent --server puppet-master --test
puppet kick 配置
编辑客户端/etc/puppet/puppet.conf
1 在[agent]后面添加
server = puppet-master
listen = true //这个是让puppet监听8139端口 ,有很多地方都没写server那个参数导致我找了半天的原因
2编辑或新建文件/etc/puppet/namespaceauth.conf,包含下面内容
[puppetrunner]
allow *.domain.com
3编辑文件auth.conf
path /run
method save
allow puppet.domain.com
# this one is not stricly necessary, but it has the merit
# to show the default policy which is deny everything else
path /
auth any
4 重启客户端puppet
service puppet restart
5 在服务器端执行
puppet kick -p 10 puppet-client1