# profiles::helpers::certmanager # # renders the config.yaml read by the certmanager binary (RPM-installed) class profiles::helpers::certmanager ( String $script_name = 'certmanager', Stdlib::AbsolutePath $base_path = "/opt/${script_name}", Stdlib::AbsolutePath $config_path = "${base_path}/config.yaml", Hash $vault_config = {}, String $owner = 'root', String $group = 'root', ){ file { $base_path: ensure => directory, mode => '0755', owner => $owner, group => $group, } file { $config_path: ensure => file, mode => '0660', owner => 'puppet', group => 'root', content => Sensitive(template("profiles/helpers/${script_name}_config.yaml.erb")), require => File[$base_path], } }