<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic How to automate renewal/installation of CA signed certificate? in ONTAP Rest API Discussions</title>
    <link>https://community.netapp.com/t5/ONTAP-Rest-API-Discussions/How-to-automate-renewal-installation-of-CA-signed-certificate/m-p/433124#M292</link>
    <description>&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;Hello, I am trying to use the ansible module&amp;nbsp;&lt;A href="https://docs.ansible.com/ansible/2.10/collections/netapp/ontap/na_ontap_security_certificates_module.html" target="_blank" rel="nofollow noopener noreferrer"&gt;https://docs.ansible.com/ansible/2.10/collections/netapp/ontap/na_ontap_security_certificates_module.html&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;We’re updating an expiring signed certificate, which requires the deletion of an existing certificate, which stops the ssl service. If the service stops every time a certificate is deleted, how am I supposed to install the new one. The SSL service is down after deleting.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I have also tried using the netapp command line module which allows me to run the proper command "cert install (parameters)" but I cannot use this workaround because I cannot figure out how to get ansible to wait for the user inputs (I am prompted for my certificate and private key).&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have also made a post here:&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://github.com/ansible-collections/netapp.ontap/issues/53" target="_blank" rel="nofollow noopener noreferrer"&gt;https://github.com/ansible-collections/netapp.ontap/issues/53&lt;/A&gt;&amp;nbsp;which shows my ansible playbook.&lt;/P&gt;</description>
    <pubDate>Wed, 04 Jun 2025 10:03:23 GMT</pubDate>
    <dc:creator>rcordova</dc:creator>
    <dc:date>2025-06-04T10:03:23Z</dc:date>
    <item>
      <title>How to automate renewal/installation of CA signed certificate?</title>
      <link>https://community.netapp.com/t5/ONTAP-Rest-API-Discussions/How-to-automate-renewal-installation-of-CA-signed-certificate/m-p/433124#M292</link>
      <description>&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;Hello, I am trying to use the ansible module&amp;nbsp;&lt;A href="https://docs.ansible.com/ansible/2.10/collections/netapp/ontap/na_ontap_security_certificates_module.html" target="_blank" rel="nofollow noopener noreferrer"&gt;https://docs.ansible.com/ansible/2.10/collections/netapp/ontap/na_ontap_security_certificates_module.html&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;We’re updating an expiring signed certificate, which requires the deletion of an existing certificate, which stops the ssl service. If the service stops every time a certificate is deleted, how am I supposed to install the new one. The SSL service is down after deleting.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I have also tried using the netapp command line module which allows me to run the proper command "cert install (parameters)" but I cannot use this workaround because I cannot figure out how to get ansible to wait for the user inputs (I am prompted for my certificate and private key).&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have also made a post here:&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://github.com/ansible-collections/netapp.ontap/issues/53" target="_blank" rel="nofollow noopener noreferrer"&gt;https://github.com/ansible-collections/netapp.ontap/issues/53&lt;/A&gt;&amp;nbsp;which shows my ansible playbook.&lt;/P&gt;</description>
      <pubDate>Wed, 04 Jun 2025 10:03:23 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Rest-API-Discussions/How-to-automate-renewal-installation-of-CA-signed-certificate/m-p/433124#M292</guid>
      <dc:creator>rcordova</dc:creator>
      <dc:date>2025-06-04T10:03:23Z</dc:date>
    </item>
    <item>
      <title>Re: How to automate renewal/installation of CA signed certificate?</title>
      <link>https://community.netapp.com/t5/ONTAP-Rest-API-Discussions/How-to-automate-renewal-installation-of-CA-signed-certificate/m-p/433127#M293</link>
      <description>&lt;P&gt;The folks in that GitHub issue or in the #configurationmgmt channel of Slack will know best about the Anisible specifics. However, as far as a general workflow goes, I would expect it to be something like this:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;Install the new certificate&lt;/LI&gt;&lt;LI&gt;Modify the web service to use the new certificate&lt;/LI&gt;&lt;LI&gt;Remove the old certificate&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;You may end up with a disconnection before you get a response to step 2, I'm not sure. You'd want to handle the error and retry in that case.&lt;/P&gt;</description>
      <pubDate>Thu, 17 Mar 2022 20:16:28 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Rest-API-Discussions/How-to-automate-renewal-installation-of-CA-signed-certificate/m-p/433127#M293</guid>
      <dc:creator>RobertBlackhart</dc:creator>
      <dc:date>2022-03-17T20:16:28Z</dc:date>
    </item>
  </channel>
</rss>

