One certificate for all new tenants

usability
support
known
(Jacek) #1

Hi,

I have a question currently I am working on automation where Tentacle will be installed and configured. As I already read in Octopus docs it is not possible to generate a certificate without a profile loaded.

Currently I am generating new certificate on each new provisioned host.
My question is what if I generate one certificate and I will use it on all new hosts?
What problems this can cause?

My idea is to generate one certificate put it on nas drive and import it on new hosts.

What do you think about this idea?

Thanks!

(Daniel Fischer) #3

Hi @jack_mat,

thanks for getting in touch! I may need to get a bit more information about your requirements here to get a better idea of how we can help.

Are you attempting to set this up to configure Listening or Polling Tentacles. I don’t believe this will work if you are using Polling Tentacles as the Thumbprint is used to identify the target with the Octopus server. Having multiple Polling Tentacles with the same Thumbprint will cause some conflicts here.

If you were to do this with Listening Tentacles, then it should work, as the hostname/address is used to identify Tentacles in listening mode.

Have you tried this and encountered any issues?

If this does not help, or if you have further questions here, please don’t hesitate to let me know.

Best regards,
Daniel

(Jacek) #4

Hi Daniel,
I have used it for Listening tentacles and it works great. Till now I did not notice any problems.

Thanks for help

1 Like
(Daniel Fischer) #5

Hi @jack_mat,

Thanks for the update here! I’m glad to hear this is working for you.

Feel free to get in touch at any time. :slight_smile:

Best regards,
Daniel