Bug 2009698 - [Doc][ODF/external RGW] : Add details about set up TLS enabled RGW
Summary: [Doc][ODF/external RGW] : Add details about set up TLS enabled RGW
Keywords:
Status: ASSIGNED
Alias: None
Product: Red Hat OpenShift Data Foundation
Classification: Red Hat Storage
Component: documentation
Version: 4.9
Hardware: Unspecified
OS: Unspecified
unspecified
unspecified
Target Milestone: ---
: ---
Assignee: Erin Donnelly
QA Contact: Elad
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2021-10-01 11:34 UTC by Jiffin
Modified: 2023-08-09 16:43 UTC (History)
5 users (show)

Fixed In Version:
Doc Type: If docs needed, set a value
Doc Text:
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)

Description Jiffin 2021-10-01 11:34:36 UTC
Describe the issue:
How to set up external RGW with TLS enabled?

Describe the task you were trying to accomplish:
Mention about option in external script ceph-external-cluster-details-exporter.py

Suggestions for improvement:
 --rgw-tls-cert-path <RGW_TLS_CERT_PATH>
This option is required if the external RGW is running in HTTPS endpoint, if cert needs to be provided in a file for the script. The scripts create k8s secret "ceph-rgw-tls-cert".

Document URL:
https://access.redhat.com/documentation/en-us/red_hat_openshift_container_storage/4.8/html/deploying_openshift_container_storage_in_external_mode/creating-an-openshift-container-storage-cluster-service-for-external-storage_rhocs

Chapter/Section Number and Title:
Chapter 4. Creating an OpenShift Container Storage Cluster service for external mode

Product Version:
4.9
Environment Details:
External ceph cluster
Any other versions of this document that also needs this update:

Additional information:

Please note OBC/cephobjectstore resources does not hold this cert the information. Either user can request different client certs from the admin (if it running a different namespace than objectstore/ceph cluster) for their applications. Or else if they run on the same namespace then can use the "ceph-rgw-tls-cert"

Comment 3 Mustafa Aydın 2022-02-06 07:40:07 UTC
Please also  be aware of the BZ https://bugzilla.redhat.com/show_bug.cgi?id=2051076


Note You need to log in before you can comment on or make changes to this bug.