Skip to content

← All integrations

Linux · Load balancer

Combines certificate, chain and key into one PEM file and reloads HAProxy after validation.

The service agent on the server fetches the task from the appliance over outbound HTTPS on port 443 and installs the certificate locally on the server. The appliance never connects to the server.

What happens

  1. The service agent on the server fetches the task from the appliance over outbound HTTPS, port 443.
  2. Certificate, chain and key are written as one PEM file for the bind line.
  3. The configuration is validated and HAProxy is reloaded. If it fails: Rollback puts the previous PEM file back and reloads.
  4. Verification: the package validates the PEM file and that haproxy.cfg points at it.

Technical details

Connection
The package runs through the service agent on the server. The agent connects over outbound HTTPS to the appliance, port 443 by default. You open no port into the server.
Service ports
443, 80
You need
The service agent installed on the server.
Actions
Discovery, Installation, Verification, Rollback
Packages
haproxy-ssh

Get started