Bug 1853794 - [Ceph] [RFE][STS] Make the minduration for STS tokens configurable
Summary: [Ceph] [RFE][STS] Make the minduration for STS tokens configurable
Keywords:
Status: CLOSED ERRATA
Alias: None
Product: Red Hat Ceph Storage
Classification: Red Hat Storage
Component: RGW
Version: 4.1
Hardware: All
OS: All
unspecified
medium
Target Milestone: z2
: 4.1
Assignee: Matt Benjamin (redhat)
QA Contact: Tejas
Aron Gunn
URL:
Whiteboard:
Depends On:
Blocks: 1816167
TreeView+ depends on / blocked
 
Reported: 2020-07-04 07:04 UTC by Mustafa Aydın
Modified: 2023-12-15 18:24 UTC (History)
10 users (show)

Fixed In Version: ceph-14.2.8-94.el8cp, ceph-14.2.8-94.el7cp
Doc Type: Enhancement
Doc Text:
.The minimum value of a session token's expiration is configurable The `rgw_sts_min_session_duration` option can now have a value lower than the default value of 900 seconds.
Clone Of:
Environment:
Last Closed: 2020-09-30 17:26:19 UTC
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Red Hat Issue Tracker RHCEPH-8055 0 None None None 2023-12-15 18:24:14 UTC
Red Hat Product Errata RHBA-2020:4144 0 None None None 2020-09-30 17:26:44 UTC

Description Mustafa Aydın 2020-07-04 07:04:55 UTC
Description of problem:
At the current implementation STS token min duration time is set to 900 as hardcoded. This can be configurable as per the Customer requirements. 

Upstream:

https://github.com/ceph/ceph/pull/35612

Version-Release number of selected component (if applicable):
4.1

How reproducible:
Always

Comment 9 errata-xmlrpc 2020-09-30 17:26:19 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory (Red Hat Ceph Storage 4.1 Bug Fix update), and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHBA-2020:4144


Note You need to log in before you can comment on or make changes to this bug.