Bugzilla will be upgraded to version 5.0. The upgrade date is tentatively scheduled for 2 December 2018, pending final testing and feedback.
Bug 1155378 - [RFE][sahara]: More-Security-Sahara-Support-Https
[RFE][sahara]: More-Security-Sahara-Support-Https
Status: CLOSED ERRATA
Product: Red Hat OpenStack
Classification: Red Hat
Component: openstack-sahara (Show other bugs)
unspecified
Unspecified Unspecified
high Severity high
: Upstream M2
: 7.0 (Kilo)
Assigned To: Elise Gafford
Luigi Toscano
https://blueprints.launchpad.net/saha...
upstream_milestone_kilo-2 upstream_de...
: FutureFeature
Depends On:
Blocks:
  Show dependency treegraph
 
Reported: 2014-10-22 00:00 EDT by RHOS Integration
Modified: 2015-08-05 09:15 EDT (History)
6 users (show)

See Also:
Fixed In Version: openstack-sahara-2015.1.0-2.el7ost
Doc Type: Enhancement
Doc Text:
With this enhancement, the Sahara API now fully supports the HTTPS protocol.
Story Points: ---
Clone Of:
Environment:
Last Closed: 2015-08-05 09:15:16 EDT
Type: ---
Regression: ---
Mount Type: ---
Documentation: ---
CRM:
Verified Versions:
Category: ---
oVirt Team: ---
RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: ---


Attachments (Terms of Use)


External Trackers
Tracker ID Priority Status Summary Last Updated
Red Hat Product Errata RHEA-2015:1548 normal SHIPPED_LIVE Red Hat Enterprise Linux OpenStack Platform Enhancement Advisory 2015-08-05 13:07:06 EDT

  None (edit)
Description RHOS Integration 2014-10-22 00:00:57 EDT
Cloned from launchpad blueprint https://blueprints.launchpad.net/sahara/+spec/sahara-support-https.

Description:

For more security, sahara need to support https.

Specification URL (additional information):

None
Comment 4 Luigi Toscano 2015-07-17 11:59:20 EDT
Verified that Sahara can be configured to use SSL endpoints (https). The configuration requires setting two parameters (cert_file and key_file) in the [ssl] section of sahara.conf, and the creation of endpoints with https instead of http in the URL. When the https endpoints are defined, even if the http are still available, the sahara CLI client requires already the parameter with the public certificate of the CA.

Verification of Sahara ability to communicate using SSL with other components has been postponed, due to other components configuration issues. 

Verified on RHEL 7.1, with RHEL-OSP7 packages:
openstack-sahara-common-2015.1.0-5.el7ost.noarch
openstack-sahara-engine-2015.1.0-5.el7ost.noarch
openstack-sahara-api-2015.1.0-5.el7ost.noarch
python-saharaclient-0.9.0-1.el7ost.noarch
Comment 6 errata-xmlrpc 2015-08-05 09:15:16 EDT
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory, and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHEA-2015:1548

Note You need to log in before you can comment on or make changes to this bug.