Uploaded image for project: 'OpenShift Virtualization'
  1. OpenShift Virtualization
  2. CNV-74942

set the TLSSecurityProfile in console-plugin

XMLWordPrintable

    • 2
    • CNV I/U Operators Sprint 283, CNV I/U Operators Sprint 284
    • None

      In HCO, add the TLS security profile configuration to the ConfigMap where of the console-plugin nginx configurations.

      Notice that there is no concept of "minimum TLS version" in nginx. instead, there is a list of supported versions. so if the minimal TLS version in TLSv1.2, then the setting should be:

      server {
          ...
          ssl_protocols       TLSv1.2 TLSv1.3;
          ...
      }
      

      It seems that the ciphers names should also be transform into ngnix format.

              rh-ee-rrabinov Roni Rabinovitz
              nunnatsa Nahshon Unna Tsameret
              Harel Meir Harel Meir
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated: