Fedora Messaging certificate for logdetective-packit #12989

Closed
opened 2025-12-16 10:10:12 +00:00 by jpodivin · 11 comments

Describe what you would like us to do:


I need a certificate and key to publish messages on Fedora Messaging bus for logdetective-packit service. The service will be processing requests for Log Detective analysis from packit, sending them forward to Log Detective server and finally sending results on the messaging bus.

The service would be deployed as a container, on logdetective01 machine, which is already managed by Fedora infrastructure.

When do you need this to be done by? (YYYY/MM/DD)


2026/02/01

# Describe what you would like us to do: ---- I need a certificate and key to publish messages on Fedora Messaging bus for [logdetective-packit](https://github.com/fedora-copr/logdetective-packit) service. The service will be processing requests for Log Detective analysis from packit, sending them forward to Log Detective server and finally sending results on the messaging bus. The service would be deployed as a container, on logdetective01 machine, which is already managed by Fedora infrastructure. # When do you need this to be done by? (YYYY/MM/DD) ---- 2026/02/01
Owner

Whoever will work on this, the guide how to do it is here https://docs.fedoraproject.org/en-US/infra/howtos/fedora_messaging_certificates/

Whoever will work on this, the guide how to do it is here https://docs.fedoraproject.org/en-US/infra/howtos/fedora_messaging_certificates/
Owner

Metadata Update from @zlopez:

  • Issue priority set to: Waiting on Assignee (was: Needs Review)
  • Issue tagged with: low-trouble, medium-gain, ops
**Metadata Update from @zlopez**: - Issue priority set to: Waiting on Assignee (was: Needs Review) - Issue tagged with: low-trouble, medium-gain, ops
Author

Hi. I would like to ask if there is anything we can do to get the certificate?

Hi. I would like to ask if there is anything we can do to get the certificate?
Owner

Metadata Update from @kevin:

  • Issue assigned to kevin
**Metadata Update from @kevin**: - Issue assigned to kevin
Owner

I have created the cert. There's a copy in your homedir on batcave01.

Let us know if you have any problems with it.

I have created the cert. There's a copy in your homedir on batcave01. Let us know if you have any problems with it.
Owner

Metadata Update from @kevin:

  • Issue close_status updated to: Fixed
  • Issue status updated to: Closed (was: Open)
**Metadata Update from @kevin**: - Issue close_status updated to: Fixed - Issue status updated to: Closed (was: Open)
Member

To add a user in RabbitMQ, it is not sufficient to create a new certificate, a user must also be created in RabbitMQ's database. I did it in commit 74e2f72.

To add a user in RabbitMQ, it is not sufficient to create a new certificate, a user must also be created in RabbitMQ's database. I did it in commit [74e2f72](https://forge.fedoraproject.org/infra/ansible/commit/74e2f728c58c5008e55e6c83e60c805470a8436c).
Member

Hey @jpodivin , we are rotating our RabbitMQ CA so we need to issue you a new certificate and private key pair for this user. I have put the new cert and key in your home directory on batcave01, with the new CA cert. Please update your app and ping me here when it's done. Thank you and sorry for the trouble!

Hey @jpodivin , we are rotating our RabbitMQ CA so we need to issue you a new certificate and private key pair for this user. I have put the new cert and key in your home directory on batcave01, with the new CA cert. Please update your app and ping me here when it's done. Thank you and sorry for the trouble!
Author

Thanks, I'll switch the certificates.

Thanks, I'll switch the certificates.
Author

@abompard Certificates switched.

@abompard Certificates switched.
Member

Thanks!

Thanks!
Sign in to join this conversation.
No milestone
No project
No assignees
4 participants
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference
infra/tickets#12989
No description provided.