Bug 1448867 - engine-setup: Re-enable SSL for OVN north db connections
Summary: engine-setup: Re-enable SSL for OVN north db connections
Keywords:
Status: CLOSED CURRENTRELEASE
Alias: None
Product: ovirt-engine
Classification: oVirt
Component: BLL.Network
Version: 4.2.0
Hardware: Unspecified
OS: Unspecified
low
high
Target Milestone: ovirt-4.2.0
: ---
Assignee: Marcin Mirecki
QA Contact: Mor
URL:
Whiteboard:
Depends On: 1446538
Blocks:
TreeView+ depends on / blocked
 
Reported: 2017-05-08 13:11 UTC by Marcin Mirecki
Modified: 2017-12-20 11:18 UTC (History)
3 users (show)

Fixed In Version:
Doc Type: No Doc Update
Doc Text:
undefined
Clone Of:
Environment:
Last Closed: 2017-12-20 11:18:06 UTC
oVirt Team: Network
Embargoed:
rule-engine: ovirt-4.2+


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
oVirt gerrit 77807 0 master MERGED packaging: re-enable SSL support for OVN northdb connection 2017-07-31 09:33:48 UTC

Description Marcin Mirecki 2017-05-08 13:11:19 UTC
SSL is currently disabled for OVN north db connections becasuse of:
https://bugzilla.redhat.com/1446538

Patch: https://gerrit.ovirt.org/#/c/76503
should be reverted when the bug is fixed

Comment 1 Marcin Mirecki 2017-05-12 11:34:51 UTC
An additional item that must be done during the revert:

install the pyOpenSSL package

It looks like the python-openvswitch is missing the dependency.

Comment 2 Mor 2017-08-03 13:18:10 UTC
Verified:
ovirt-provider-ovn-1.1-2.20170710074946.git5abef7f.el7.centos.noarch
pyOpenSSL-0.13.1-3.el7.x86_64

/var/log/ovirt-provider-ovn.log:
2017-08-03 16:05:08,584   Starting new HTTPS connection (1): network-ge-2.scl.lab.tlv.redhat.com
2017-08-03 16:05:08,695   "POST /ovirt-engine/sso/oauth/token HTTP/1.1" 200 234
2017-08-03 16:05:08,698   Response code: 200
 
# ovn-nbctl get-connection
pssl:6641

# ovn-nbctl get-ssl
Private key: /etc/pki/ovirt-engine/keys/ovn-ndb.key.nopass
Certificate: /etc/pki/ovirt-engine/certs/ovn-ndb.cer
CA Certificate: /etc/pki/ovirt-engine/ca.pem
Bootstrap: false

Comment 3 Sandro Bonazzola 2017-12-20 11:18:06 UTC
This bugzilla is included in oVirt 4.2.0 release, published on Dec 20th 2017.

Since the problem described in this bug report should be
resolved in oVirt 4.2.0 release, published on Dec 20th 2017, it has been closed with a resolution of CURRENT RELEASE.

If the solution does not work for you, please open a new bug report.


Note You need to log in before you can comment on or make changes to this bug.