If you’re creating nodes using knife bootstrap (or another plugin like knife ec2 or vsphere) the templates handle that for you.
<%= validation_key %>
) > /tmp/validation.pem
awk NF /tmp/validation.pem > /etc/chef/validation.pem
chmod 0600 /etc/chef/validation.pem
On Wednesday, December 19, 2012 at 4:40 PM, Kirill Timofeev wrote:
please share how do you distribute validation.pem. It looks this is
sensitive piece of data since anybody having it can register new client.
So it seems it is bad idea to make it available, for example, via http.
But how it can be provided for new client installation?