@@ 40,9 40,9 @@ job "fabio" {
// Need to figure out a way to get fabio a client cert
args = [
"-registry.consul.addr", "https://localhost:8501",
- "-registry.consul.tls.cafile", "/etc/ssl/consul/ca.pem",
- "-registry.consul.tls.certfile", "/etc/ssl/fabio/consul.pem",
- "-registry.consul.tls.keyfile", "/etc/ssl/fabio/consul-key.pem",
+ "-registry.consul.tls.cafile", "/etc/ssl/consul-agent/ca.crt",
+ "-registry.consul.tls.certfile", "/etc/ssl/fabio/consul.crt",
+ "-registry.consul.tls.keyfile", "/etc/ssl/fabio/consul.key",
"-proxy.cs", "cs=mycerts;type=vault;cert=secret/fabio/certs",
"-proxy.addr", ":${NOMAD_PORT_balancer};cs=mycerts",
]
@@ 61,9 61,9 @@ job "fabio" {
env {
VAULT_ADDR = "https://vault.service.consul:8200"
- VAULT_CAPATH = "/etc/ssl/vault/ca.pem"
- VAULT_CLIENT_CERT = "/etc/ssl/fabio/vault.pem"
- VAULT_CLIENT_KEY = "/etc/ssl/fabio/vault-key.pem"
+ VAULT_CAPATH = "/etc/ssl/vault-server/ca.crt"
+ VAULT_CLIENT_CERT = "/etc/ssl/fabio/vault.crt"
+ VAULT_CLIENT_KEY = "/etc/ssl/fabio/vault.key"
}
resources {