+++ /dev/null
------BEGIN DH PARAMETERS-----
-MIIBCAKCAQEApDYHQhAm+Wje/kmAWAzCIOhzxJj6RjjKbOfsUp31PpBaeQKwdIZZ
-jStXfkdo1/c4FfpKczO4WMQJBJjCts6nmEfaPTq/ybcVtG0GQDwO6NIjM8sSymUF
-Qcnd9aH2jfUyciPqkAfTavvy+zZIU+3HxTvCA3I6JY5qLZ4YOpNheRu5Q9azBMLo
-vfb+6oQGMnMvUVCSU8aw8BQ1qwhzJJQNAszQqA3DrxG17jsk0mBzsR3KSs4eNcjx
-+65YhKArG76J1NolcP1rocehK5nrH2IO3cU2G/m2Y09DkXSP9thRSxUQ7rVKSgbC
-KhA263146gEf+bbKdMf6zrsNpjisMZ62ewIBAg==
------END DH PARAMETERS-----
package "openssl"
package "ssl-cert"
-%w[letsencrypt dhparam].each do |certificate|
- cookbook_file "/etc/ssl/certs/#{certificate}.pem" do
- owner "root"
- group "root"
- mode 0o444
- backup false
- end
+cookbook_file "/etc/ssl/certs/letsencrypt.pem" do
+ owner "root"
+ group "root"
+ mode 0o444
+ backup false
+end
+
+openssl_dhparam "/etc/ssl/certs/dhparam.pem" do
+ owner "root"
+ group "root"
+ mode 0o444
end