Project

General

Profile

Actions

Bug #50765

closed

impossible to disable TLS 1.0 and 1.1

Added by Mykola Golub almost 3 years ago. Updated almost 3 years ago.

Status:
Duplicate
Priority:
Normal
Assignee:
-
Target version:
-
% Done:

0%

Source:
Tags:
Backport:
pacific,octopus,nautilus
Regression:
No
Severity:
3 - minor
Reviewed:
Affected Versions:
ceph-qa-suite:
Pull request ID:
Crash signature (v1):
Crash signature (v2):

Description

TLS 1.0 and 1.1 are known to have some cryptographic design flaws and are recommended (required?) to be disabled on the server side. We already did it for the dashboard [1].

It seems like it is not possible to disable TLS 1.0 and 1.1 for radosgw (beast frontend).

[1] https://tracker.ceph.com/issues/48360


Related issues 1 (0 open1 closed)

Related to rgw - Bug #50932: rgw: beast: lack of TLS settingsResolvedMykola Golub

Actions
Actions #1

Updated by Mykola Golub almost 3 years ago

  • Status changed from New to Fix Under Review
  • Backport set to pacific,octopus,nautilus
  • Pull request ID set to 41384
Actions #2

Updated by Casey Bodley almost 3 years ago

  • Related to Bug #50932: rgw: beast: lack of TLS settings added
Actions #3

Updated by Mykola Golub almost 3 years ago

  • Status changed from Fix Under Review to Duplicate

Closed in favour of #50932.

Actions

Also available in: Atom PDF