Browse Source

certs: assign .key.pem to group ssl-cert, to permit access by other users

Karsten Böddeker 7 years ago
parent
commit
df466da4e2
1 changed files with 2 additions and 2 deletions
  1. 2 2
      certs/init.sls

+ 2 - 2
certs/init.sls

@@ -94,6 +94,6 @@ c_rehash:
   file.managed:
     - contents_pillar: {{ pillar_name }}:privkey
     - user: root
-    - group: root
-    - mode: 400
+    - group: ssl-cert
+    - mode: 440
 {% endfor %}