Re: policy_server.dat IP to DNS
Marco Marongiu <[email protected]> Mon, 20 Oct 2025 15:17:19 +0200
| Newsgroups | gmane.comp.sysutils.cfengine.general |
|---|---|
| Message-ID | <[email protected]> |
This is a multi-part message in MIME format. --------------Ao9Avd6jseCQ0wk9x00L3ca9 Content-Type: text/plain; charset="UTF-8"; format=flowed Content-Transfer-Encoding: quoted-printable Hello Markus I think the file by design contains the IP address, and not the=20 hostname, to avoid that a failure in name resolution could affect=20 ability of the client to connect to the server and fetch policy updates.=20 The documentation itself indicates that the file contains the IP of the=20 policy server, not the name. See=20 https://docs.cfengine.com/docs/3.24/overview-directory-structure.html#polic= y_server-dat Ciao, -- bronto On 20/10/2025 15:12, Markus Rexhepi-Lindberg wrote: > Hello, > > We have a lot of servers that was bootstrapped quite some time ago and=20 > they have the IP address instead of the DNS address of the policy=20 > server in their=C2=A0/var/cfengine/policy_server.dat file. Is there a=20 > recommended way to migrate these to use the DNS address instead? I was=20 > thinking that perhaps a simple bundle to update the file would suffice=20 > but I wanted to check with the community first to find out if there is=20 > a better way. > > BR/ > Markus > --=20 You received this message because you are subscribed to the Google Groups "= help-cfengine" group. To unsubscribe from this group and stop receiving emails from it, send an e= mail to [email protected]. To view this discussion visit https://groups.google.com/d/msgid/help-cfengi= ne/1a314eda-d38f-4651-b34c-52238d160989%40gmail.com. --------------Ao9Avd6jseCQ0wk9x00L3ca9 Content-Type: text/html; charset="UTF-8" Content-Transfer-Encoding: quoted-printable <!DOCTYPE html> <html> <head> <meta http-equiv=3D"Content-Type" content=3D"text/html; charset=3DUTF-8= "> </head> <body> <p><font face=3D"Cantarell">Hello Markus</font></p> <p><font face=3D"Cantarell">I think the file by design contains the IP address, and not the hostname, to avoid that a failure in name resolution could affect ability of the client to connect to the server and fetch policy updates. The documentation itself indicates that the file contains the IP of the policy server, not the name. See <a class=3D"moz-txt-link-freetext" href=3D"https://docs.cfengine.com/docs/3= .24/overview-directory-structure.html#policy_server-dat">https://docs.cfeng= ine.com/docs/3.24/overview-directory-structure.html#policy_server-dat</a></= font></p> <p><font face=3D"Cantarell">Ciao,<br> -- bronto</font></p> <p><font face=3D"Cantarell"><br> </font></p> <div class=3D"moz-cite-prefix">On 20/10/2025 15:12, Markus Rexhepi-Lindberg wrote:<br> </div> <blockquote type=3D"cite" cite=3D"mid:[email protected]"> <meta http-equiv=3D"content-type" content=3D"text/html; charset=3DUTF= -8"> Hello, <div><br> </div> <div>We have a lot of servers that was bootstrapped quite some time ago and they have the IP address instead of the DNS address of the policy server in their=C2=A0/var/cfengine/policy_server.dat file. Is there a recommended way to migrate these to use the DNS address instead? I was thinking that perhaps a simple bundle to update the file would suffice but I wanted to check with the community first to find out if there is a better way.<br> <br> BR/<br> Markus</div> <br> </blockquote> </body> </html> <p></p> -- <br /> You received this message because you are subscribed to the Google Groups &= quot;help-cfengine" group.<br /> To unsubscribe from this group and stop receiving emails from it, send an e= mail to <a href=3D"mailto:[email protected]">help-= [email protected]</a>.<br /> To view this discussion visit <a href=3D"https://groups.google.com/d/msgid/= help-cfengine/1a314eda-d38f-4651-b34c-52238d160989%40gmail.com?utm_medium= =3Demail&utm_source=3Dfooter">https://groups.google.com/d/msgid/help-cfengi= ne/1a314eda-d38f-4651-b34c-52238d160989%40gmail.com</a>.<br /> --------------Ao9Avd6jseCQ0wk9x00L3ca9--