Project

General

Profile

Actions

Bug #12870

closed

ansible: Failed to validate the SSL certificate for raw.githubusercontent.com when downloading SSH pubkeys

Added by Greg Farnum over 8 years ago. Updated over 8 years ago.

Status:
Resolved
Priority:
High
Assignee:
Category:
-
% Done:

0%

Source:
Q/A
Tags:
Backport:
Regression:
No
Severity:
3 - minor
Reviewed:
Affected Versions:
ceph-qa-suite:
Crash signature (v1):
Crash signature (v2):

Description

 {'plana09.front.sepia.ceph.com': {'invocation': {'module_name':
    'authorized_key', 'module_args': 'user="ubuntu" key=https://raw.githubuserc
    ontent.com/ceph/keys/autogenerated/ssh/@all.pub'}, 'failed': True, 'msg':
    'Failed to validate the SSL certificate for raw.githubusercontent.com:443.
    Use validate_certs=False (insecure) or make sure your managed systems have
    a valid CA certificate installed. Paths checked for this platform:
    /etc/ssl/certs, /etc/pki/ca-trust/extracted/pem, /etc/pki/tls/certs,
    /usr/share/ca-certificates/cacert.org, /etc/ansible'},
    'mira012.front.sepia.ceph.com': {'invocation': {'module_name':
    'authorized_key', 'module_args': 'user="ubuntu" key=https://raw.githubuserc
    ontent.com/ceph/keys/autogenerated/ssh/@all.pub'}, 'failed': True, 'msg':
    'Failed to validate the SSL certificate for raw.githubusercontent.com:443.
    Use validate_certs=False (insecure) or make sure your managed systems have
    a valid CA certificate installed. Paths checked for this platform:
    /etc/ssl/certs, /etc/pki/ca-trust/extracted/pem, /etc/pki/tls/certs,
    /usr/share/ca-certificates/cacert.org, /etc/ansible'},
    'burnupi08.front.sepia.ceph.com': {'invocation': {'module_name':
    'authorized_key', 'module_args': 'user="ubuntu" key=https://raw.githubuserc
    ontent.com/ceph/keys/autogenerated/ssh/@all.pub'}, 'failed': True, 'msg':
    'Failed to validate the SSL certificate for raw.githubusercontent.com:443.
    Use validate_certs=False (insecure) or make sure your managed systems have
    a valid CA certificate installed. Paths checked for this platform:
    /etc/ssl/certs, /etc/pki/ca-trust/extracted/pem, /etc/pki/tls/certs,
    /usr/share/ca-certificates/cacert.org, /etc/ansible'}}

http://pulpito.ceph.com/teuthology-2015-08-24_23:08:02-kcephfs-master-testing-basic-multi/1030714/
http://pulpito.ceph.com/teuthology-2015-08-23_23:18:02-multimds-next-testing-basic-multi/1028549/

Searching my email this also seems to have popped up in a lot of the backport tests and things. Maybe this should be a sepia issue? Not sure.

Actions

Also available in: Atom PDF