You are viewing a plain text version of this content. The canonical link for it is here.
Posted to issues@trafficserver.apache.org by "Bryan Call (JIRA)" <ji...@apache.org> on 2016/08/16 17:09:20 UTC
[jira] [Updated] (TS-2773) Rewrite SSL certificate configuration
[ https://issues.apache.org/jira/browse/TS-2773?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]
Bryan Call updated TS-2773:
---------------------------
Assignee: (was: Susan Hinrichs)
> Rewrite SSL certificate configuration
> -------------------------------------
>
> Key: TS-2773
> URL: https://issues.apache.org/jira/browse/TS-2773
> Project: Traffic Server
> Issue Type: New Feature
> Components: Configuration, SSL
> Reporter: James Peach
> Labels: incompatible
> Fix For: 8.0.0
>
>
> Currently, SSL certificate configuration is split across {{records.config}} and {{ssl-multicert.config}}. This leads to awkward situations where you can't enable client certificate validation for a particular server certificate, and you can't add a SSL key passphrase dialog globally.
> I'd like to unify the SSL configuration by pushing all the configuration parameters down to {{records.config}} and allowing {{ssl-multicert.config}} to override those settings. This would be logically similar to how overridable configurations work for the TS API.
> I plan to retain backwards compatibility with 4.x {{ssl-multicert.config}} syntax. You would still need {{ssl-multicert.config}} to be able to configure multiple SSL certificates.
--
This message was sent by Atlassian JIRA
(v6.3.4#6332)