Skip to content

security: tls configuration for baseline security#437

Merged
junr03 merged 5 commits intomasterfrom
ms/trusted-pem
Sep 13, 2019
Merged

security: tls configuration for baseline security#437
junr03 merged 5 commits intomasterfrom
ms/trusted-pem

Conversation

@goaway
Copy link
Copy Markdown
Contributor

@goaway goaway commented Sep 12, 2019

Description: This PR inlines certificates for trusted certificate authorities into the config template and adds subject alt name verification to the base cluster. The certificate bundle is the same as that presented in MacOS 10.14.6
Risk Level: High
Testing: Simulator
Fixes #322

Signed-off-by: Mike Schore <mike.schore@gmail.com>
Signed-off-by: Mike Schore <mike.schore@gmail.com>
Signed-off-by: Mike Schore <mike.schore@gmail.com>
rebello95
rebello95 previously approved these changes Sep 12, 2019
Copy link
Copy Markdown
Contributor

@rebello95 rebello95 left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks! Would you mind also linking the ticket in your PR description so it closes when this merges?

Signed-off-by: Mike Schore <mike.schore@gmail.com>
Signed-off-by: Mike Schore <mike.schore@gmail.com>
@junr03 junr03 merged commit d8ec07b into master Sep 13, 2019
@junr03 junr03 deleted the ms/trusted-pem branch September 13, 2019 18:56
@jordontlyft
Copy link
Copy Markdown

👍

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

configs: support TLS by adding cert file

4 participants