Problem:
The foreman_openscap_client uses client ssl certificates to authenticate upload of the results to Foreman.
In the case of a RHEL the Entitlement certificate that comes with registration can be used.
Another possility is the Puppet client certificate. But what if config is not done using Puppet (hence no Puppet server or certificate).
Other distros (debian, etc) don’t have an automatic client certificate that could be used.
Expected outcome:
SSL client certificate (?) to authenticate openscap result upload to Foreman.
Foreman and Proxy versions:
Up to 3.12 (current version at the time of this writing)
Foreman and Proxy plugin versions:
Foreman / Katello: 3.12 / 4.14
Openscap plugin: 1.0
foreman_openscap_client: 0.6.2
Distribution and version:
Foreman server+proxy: RHEL 9.4
Client: eg. Debian 12 (bookworm), AlmaLinux 9.4, OracleLinux 9.4
Other relevant data:
Upload fails due to missing client certificate, thus the upload is rejected by Foreman