-
Story
-
Resolution: Obsolete
-
Normal
-
None
-
None
-
None
-
None
-
8
-
False
-
-
False
-
?
-
?
-
?
-
?
-
2024Q1
Jira Description
As a PCP user I want to configure certificate rotation together with IPA (as an option) so that I can continue to rotate and manage the certificates after Data Plane Adoption from a Director based deployment.
Summary
For TLS data plane adoption we need to integrate an external (Free)IPA instance into the PCP deployment. As part of this task we want to make sure the integration between cert-manager and IPA is working and can be configured using the meta openstack-operator.
Rotation will require a different set of tests then the initially implemented provisioning.
Definition of Ready
When we can consider User Story to be Ready?
- Defined clearly enough that all members of the team understand what needs to be done
- Includes any required enabling specs. wire frames etc.
- Fully meet INVEST criteria for User Stories
- Dependencies identified and there is a clear strategy how they will be managed
Prerequisites:
- Initial environment with IPA and PCP
Acceptance Criteria
- Possibility to configure IPA in cert-manager to issue and rotate certificates
- Possibility to have an internal IPA deployed for testing purposes
- CRL integration
Definition of Done
When we can consider User Story to be Done:
- Tests implemented
- Documentation on how to integrate with an external IPA instance
- Pull requests proposed to openstack-operator and merged to master branch
- Periodic testing?
- is cloned by
-
OSPRH-2194 Making sure that existing certificates on edpm nodes are tracked after adoption procedure
- Closed