Red Hat Bugzilla – Bug 1299165
Enable SSL middleware for Cinder & Nova & Horizon in puppet-tripleo
Last modified: 2016-10-11 09:30:54 EDT
We need to backport https://review.openstack.org/#/c/268230 and https://review.openstack.org/#/c/268230 in OPM so we can enable SSL in OSP7 for nova & cinder API services.
Also Horizon: https://review.openstack.org/#/c/268288/
So for cinder:
In /etc/cinder/api-paste.ini we now have the following:
Checking a deployment with SSL:
grep rsprep /etc/haproxy/haproxy.cfg
rsprep ^Location:\ http://(.*) Location:\ https://\1
Nova was deemed unnecessary for the purposes of enabling public endpoints in the overcloud
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.
For information on the advisory, and where to find the updated
files, follow the link below.
If the solution does not work for you, open a new bug report.