*** rahulunair has quit IRC | 00:02 | |
*** tmcpeak has quit IRC | 00:05 | |
*** salv-orlando has joined #openstack-security | 00:44 | |
*** salv-orlando has quit IRC | 00:49 | |
*** browne has quit IRC | 01:09 | |
*** bpokorny has quit IRC | 01:11 | |
*** sdake has quit IRC | 01:55 | |
*** sdake has joined #openstack-security | 01:56 | |
*** browne has joined #openstack-security | 01:58 | |
*** sdake has quit IRC | 02:12 | |
*** browne has quit IRC | 02:17 | |
*** jass93 has joined #openstack-security | 02:37 | |
*** tmcpeak has joined #openstack-security | 02:37 | |
*** salv-orlando has joined #openstack-security | 02:40 | |
*** edmondsw has quit IRC | 02:40 | |
*** jass93_ has joined #openstack-security | 02:43 | |
*** salv-orlando has quit IRC | 02:44 | |
*** jass93 has quit IRC | 02:45 | |
*** ccneill has joined #openstack-security | 03:09 | |
*** tmcpeak has quit IRC | 03:36 | |
*** ccneill has quit IRC | 03:43 | |
*** rcernin has joined #openstack-security | 04:49 | |
*** markvoelker has quit IRC | 05:06 | |
*** Mainus has joined #openstack-security | 05:07 | |
*** jass93_ has quit IRC | 05:08 | |
*** salv-orlando has joined #openstack-security | 05:11 | |
*** Mainus has quit IRC | 05:12 | |
*** jass93 has joined #openstack-security | 05:17 | |
*** jass93_ has joined #openstack-security | 05:25 | |
*** jass93 has quit IRC | 05:26 | |
*** jass93 has joined #openstack-security | 05:50 | |
*** jass93_ has quit IRC | 05:51 | |
*** jass93_ has joined #openstack-security | 06:00 | |
*** markvoelker has joined #openstack-security | 06:00 | |
*** jass93 has quit IRC | 06:00 | |
*** sigmavirus24b has joined #openstack-security | 06:01 | |
*** tristanC_ has joined #openstack-security | 06:04 | |
*** elmiko_ has joined #openstack-security | 06:05 | |
*** markvoelker has quit IRC | 06:06 | |
*** [BNC]hyakuhei has joined #openstack-security | 06:07 | |
*** B_Smith_ has quit IRC | 06:08 | |
*** zul has quit IRC | 06:08 | |
*** tristanC has quit IRC | 06:08 | |
*** mdavidson has quit IRC | 06:08 | |
*** sweston has quit IRC | 06:08 | |
*** hyakuhei has quit IRC | 06:08 | |
*** krotscheck_dcm has quit IRC | 06:08 | |
*** sigmavirus24_awa has quit IRC | 06:08 | |
*** michaelxin has quit IRC | 06:08 | |
*** elmiko has quit IRC | 06:08 | |
*** michaelxin has joined #openstack-security | 06:09 | |
*** B_Smith has joined #openstack-security | 06:09 | |
*** krotscheck has joined #openstack-security | 06:09 | |
*** zul has joined #openstack-security | 06:09 | |
*** mdavidson has joined #openstack-security | 06:15 | |
*** tesseract- has joined #openstack-security | 06:45 | |
*** sweston has joined #openstack-security | 06:51 | |
*** sdake has joined #openstack-security | 07:12 | |
*** sweston has quit IRC | 07:14 | |
*** sweston has joined #openstack-security | 07:17 | |
*** shohel has joined #openstack-security | 07:30 | |
*** sdake has quit IRC | 07:31 | |
*** shohel has quit IRC | 07:45 | |
*** shohel has joined #openstack-security | 07:48 | |
*** markvoelker has joined #openstack-security | 08:02 | |
*** markvoelker has quit IRC | 08:08 | |
*** OSSAlanR has quit IRC | 08:12 | |
*** Tridde has quit IRC | 08:14 | |
*** liverpooler has joined #openstack-security | 08:19 | |
*** OSSAlanR has joined #openstack-security | 08:19 | |
*** [BNC]hyakuhei has quit IRC | 08:46 | |
*** hyakuhei has joined #openstack-security | 08:58 | |
*** Ryan_Lane has quit IRC | 09:27 | |
*** Trident has joined #openstack-security | 09:27 | |
*** sweston has quit IRC | 09:29 | |
*** Ryan_Lane has joined #openstack-security | 09:29 | |
*** jkf has quit IRC | 09:33 | |
*** mdavidson has quit IRC | 09:34 | |
*** dikonoor has joined #openstack-security | 09:36 | |
*** tesseract- has quit IRC | 09:38 | |
*** sweston has joined #openstack-security | 09:44 | |
*** salv-orl_ has joined #openstack-security | 09:47 | |
*** salv-orlando has quit IRC | 09:50 | |
*** tesseract- has joined #openstack-security | 09:50 | |
*** mdavidson has joined #openstack-security | 09:51 | |
*** markvoelker has joined #openstack-security | 10:04 | |
*** markvoelker has quit IRC | 10:09 | |
*** jkf has joined #openstack-security | 10:31 | |
*** edmondsw has joined #openstack-security | 11:03 | |
*** chair6 has quit IRC | 11:28 | |
*** chair6 has joined #openstack-security | 11:28 | |
*** salv-orl_ has quit IRC | 11:35 | |
*** woodburn has quit IRC | 11:50 | |
*** OSSAlanR has quit IRC | 11:57 | |
*** mdavidson has quit IRC | 12:04 | |
*** markvoelker has joined #openstack-security | 12:05 | |
*** markvoelker has quit IRC | 12:09 | |
*** mdavidson has joined #openstack-security | 12:13 | |
*** tristanC_ is now known as tristanC | 12:13 | |
*** markvoelker has joined #openstack-security | 12:14 | |
*** markvoelker has quit IRC | 12:14 | |
*** tesseract- has quit IRC | 12:15 | |
*** tesseract- has joined #openstack-security | 12:16 | |
*** salv-orlando has joined #openstack-security | 12:19 | |
*** markvoelker has joined #openstack-security | 12:27 | |
*** ninag has joined #openstack-security | 12:38 | |
*** markvoelker_ has joined #openstack-security | 13:15 | |
*** michaelxin has quit IRC | 13:17 | |
*** lmiccini has quit IRC | 13:17 | |
*** markvoelker has quit IRC | 13:17 | |
*** lmiccini has joined #openstack-security | 13:20 | |
*** michaelxin has joined #openstack-security | 13:37 | |
*** salv-orlando has quit IRC | 13:40 | |
*** jmckind has joined #openstack-security | 13:42 | |
*** jmckind_ has joined #openstack-security | 13:45 | |
*** ninag_ has joined #openstack-security | 13:46 | |
*** jmckind__ has joined #openstack-security | 13:48 | |
*** sweston has quit IRC | 13:48 | |
*** B_Smith has quit IRC | 13:48 | |
*** jmckind has quit IRC | 13:49 | |
*** ninag has quit IRC | 13:49 | |
*** mdavidson has quit IRC | 13:49 | |
*** edmondsw has quit IRC | 13:49 | |
*** zul has quit IRC | 13:49 | |
*** B_Smith has joined #openstack-security | 13:50 | |
*** jmckind_ has quit IRC | 13:51 | |
*** sweston has joined #openstack-security | 13:53 | |
*** sigmavirus24b is now known as sigmavirus24 | 13:53 | |
*** sigmavirus24 has quit IRC | 13:53 | |
*** sigmavirus24 has joined #openstack-security | 13:53 | |
*** woodburn has joined #openstack-security | 13:55 | |
*** ametts has joined #openstack-security | 13:57 | |
*** liverpooler has quit IRC | 13:58 | |
*** edmondsw has joined #openstack-security | 14:02 | |
*** mdavidson has joined #openstack-security | 14:03 | |
*** avarner has joined #openstack-security | 14:03 | |
*** zul has joined #openstack-security | 14:04 | |
*** jmckind has joined #openstack-security | 14:11 | |
*** jmckind__ has quit IRC | 14:12 | |
*** rahulunair has joined #openstack-security | 14:15 | |
*** tmcpeak has joined #openstack-security | 14:18 | |
*** mvaldes has joined #openstack-security | 14:36 | |
*** salv-orlando has joined #openstack-security | 14:41 | |
*** jmckind_ has joined #openstack-security | 14:46 | |
*** jmckind has quit IRC | 14:47 | |
*** salv-orlando has quit IRC | 14:50 | |
*** tesseract- has quit IRC | 14:58 | |
*** tmcpeak has quit IRC | 15:09 | |
*** tmcpeak has joined #openstack-security | 15:09 | |
*** shohel has quit IRC | 15:20 | |
*** jmckind has joined #openstack-security | 15:29 | |
*** jmckind_ has quit IRC | 15:29 | |
*** salv-orlando has joined #openstack-security | 15:39 | |
*** jass93_ has quit IRC | 15:54 | |
*** bpokorny has joined #openstack-security | 16:04 | |
*** mdong has joined #openstack-security | 16:04 | |
*** sdake has joined #openstack-security | 16:05 | |
*** bpokorny has quit IRC | 16:07 | |
*** SDub has joined #openstack-security | 16:08 | |
*** bpokorny has joined #openstack-security | 16:08 | |
SDub | I was curious if anyone had opinions regarding setting up openstack services to use SSL via implementing something like an apache/nginx server to handle the requests for public facing API endpoints | 16:09 |
---|---|---|
SDub | there seem to be a LOT of options out there | 16:09 |
SDub | first and foremost using apache or nginx? | 16:09 |
tmcpeak | you mean from a security standpoint? | 16:09 |
SDub | yeah | 16:10 |
SDub | I'm sorry if I'm in the wrong channel. | 16:10 |
tmcpeak | no worries, I'm not sure this is the best channel to get an answer to your question | 16:10 |
tmcpeak | security-wise both of those can be configured securely or not so shouldn't matter | 16:10 |
tmcpeak | devil is in the details | 16:10 |
SDub | alright, I was more or less curious if anyone had done it, what they used, etc. | 16:11 |
tmcpeak | ahh, I will fade into the background and let somebody else answer then :) | 16:11 |
SDub | or if someone knew of some comprehensive documentation I could see, everything I'm finding seems to missing half the details. | 16:11 |
SDub | thanks for responding! :) | 16:11 |
tmcpeak | sure | 16:11 |
*** hyakuhei has quit IRC | 16:19 | |
*** hyakuhei has joined #openstack-security | 16:19 | |
*** hyakuhei has quit IRC | 16:19 | |
*** hyakuhei has joined #openstack-security | 16:19 | |
*** ccneill has joined #openstack-security | 16:34 | |
chair6 | hey sdub .. TLS/SSL off-loading is a pretty common pattern, i think | 16:36 |
*** rcernin has quit IRC | 16:36 | |
chair6 | use a load balancer as frontend to terminate TLS/SSL with external clients, then forward either TLS/SSL or plaintext on to the openstack APIs | 16:36 |
chair6 | or run a TLS/SSL terminator (pound, stud, haproxy, etc) on the same node as the openstack APIs, and forward on localhost to the API endpoints | 16:37 |
*** austin987 has quit IRC | 16:38 | |
*** ninag_ has quit IRC | 16:39 | |
SDub | hmmm, that sounds wildly different than what I'm about to attempt haha. | 16:39 |
SDub | I was thinking of using nginx + uWSGI, setting up a proxy for each openstack API I need to use SSL | 16:40 |
chair6 | haven't seen that specific setup myself, but sounds viable :) | 16:41 |
*** browne has joined #openstack-security | 16:48 | |
*** sicarie has joined #openstack-security | 16:52 | |
*** austin987 has joined #openstack-security | 16:54 | |
*** tkelsey has joined #openstack-security | 16:55 | |
*** cjschaef has joined #openstack-security | 17:00 | |
*** mdong_ has joined #openstack-security | 17:01 | |
*** jmckind_ has joined #openstack-security | 17:01 | |
*** jmckind has quit IRC | 17:01 | |
*** mdong has quit IRC | 17:04 | |
*** mdong_ is now known as mdong | 17:04 | |
*** jhfeng has joined #openstack-security | 17:16 | |
*** mvaldes1 has joined #openstack-security | 17:18 | |
*** markvoelker has joined #openstack-security | 17:18 | |
*** avarner_ has joined #openstack-security | 17:18 | |
*** woodburn has quit IRC | 17:18 | |
*** jkf has quit IRC | 17:18 | |
*** woodburn has joined #openstack-security | 17:19 | |
*** mvaldes has quit IRC | 17:19 | |
*** sicarie has quit IRC | 17:21 | |
*** avarner has quit IRC | 17:21 | |
*** markvoelker_ has quit IRC | 17:21 | |
*** sdake has quit IRC | 17:23 | |
*** sdake has joined #openstack-security | 17:26 | |
*** mvaldes1 has quit IRC | 17:29 | |
*** dikonoor has quit IRC | 17:36 | |
*** bpokorny has quit IRC | 17:43 | |
*** salv-orlando has quit IRC | 17:44 | |
*** bpokorny has joined #openstack-security | 17:46 | |
*** tkelsey_ has joined #openstack-security | 17:47 | |
*** tmcpeak1 has joined #openstack-security | 17:47 | |
*** sdake_ has joined #openstack-security | 17:48 | |
*** jmckind_ has quit IRC | 17:49 | |
*** edaught has joined #openstack-security | 17:49 | |
*** edaught_ has joined #openstack-security | 17:49 | |
*** edaught_ has quit IRC | 17:49 | |
*** edaught has quit IRC | 17:49 | |
*** bpokorny has quit IRC | 17:49 | |
*** edaught has joined #openstack-security | 17:49 | |
*** edaught_ has joined #openstack-security | 17:49 | |
*** gmurphy_ has joined #openstack-security | 17:50 | |
*** tkelsey has quit IRC | 17:50 | |
*** gmurphy has quit IRC | 17:50 | |
*** sdake has quit IRC | 17:51 | |
*** tmcpeak has quit IRC | 17:51 | |
*** tkelsey_ is now known as tkelsey | 17:52 | |
*** bpokorny has joined #openstack-security | 17:58 | |
*** cjschaef has quit IRC | 17:59 | |
*** ametts has quit IRC | 17:59 | |
*** tkelsey has quit IRC | 18:00 | |
*** ametts has joined #openstack-security | 18:01 | |
*** salv-orlando has joined #openstack-security | 18:01 | |
*** sdake_ is now known as sdake | 18:04 | |
*** jhfeng has quit IRC | 18:05 | |
*** jkf has joined #openstack-security | 18:17 | |
*** sdake_ has joined #openstack-security | 18:17 | |
*** jhfeng has joined #openstack-security | 18:19 | |
*** sdake has quit IRC | 18:19 | |
*** mvaldes has joined #openstack-security | 18:21 | |
*** sdake_ is now known as sdake | 18:32 | |
*** jhfeng has quit IRC | 18:35 | |
*** ccneill has quit IRC | 18:36 | |
*** jass93 has joined #openstack-security | 18:39 | |
*** jass93 has left #openstack-security | 18:39 | |
*** jass93 has joined #openstack-security | 18:40 | |
*** jass93 has quit IRC | 18:49 | |
*** jkf has quit IRC | 18:50 | |
*** jhfeng has joined #openstack-security | 18:54 | |
*** jhfeng has quit IRC | 18:54 | |
*** ccneill has joined #openstack-security | 18:55 | |
*** ccneill has quit IRC | 18:56 | |
*** ccneill has joined #openstack-security | 18:56 | |
*** jhfeng has joined #openstack-security | 18:59 | |
*** sdake has quit IRC | 19:02 | |
*** jmckind has joined #openstack-security | 19:03 | |
*** sdake has joined #openstack-security | 19:05 | |
*** jass93 has joined #openstack-security | 19:07 | |
*** turvey has joined #openstack-security | 19:41 | |
*** jmckind_ has joined #openstack-security | 19:43 | |
*** jmckind has quit IRC | 19:46 | |
*** sdake_ has joined #openstack-security | 19:47 | |
*** sdake has quit IRC | 19:49 | |
*** jkf has joined #openstack-security | 19:49 | |
*** jkf has quit IRC | 20:20 | |
*** mvaldes has quit IRC | 20:20 | |
*** jmckind_ has quit IRC | 20:24 | |
*** mdong has quit IRC | 20:26 | |
*** retardedpsycho has joined #openstack-security | 20:27 | |
*** mdong has joined #openstack-security | 20:33 | |
*** mvaldes has joined #openstack-security | 20:39 | |
*** ninag has joined #openstack-security | 21:04 | |
*** tmcpeak1 has quit IRC | 21:05 | |
*** salv-orl_ has joined #openstack-security | 21:17 | |
*** jkf has joined #openstack-security | 21:18 | |
*** salv-orlando has quit IRC | 21:20 | |
*** jhfeng has quit IRC | 21:23 | |
*** jhfeng has joined #openstack-security | 21:28 | |
*** tmcpeak has joined #openstack-security | 21:41 | |
*** avarner_ has quit IRC | 21:48 | |
*** edmondsw has quit IRC | 21:53 | |
*** jass93 has quit IRC | 21:55 | |
*** sigmavirus24 is now known as sigmavirus24_awa | 21:57 | |
*** austin987 has quit IRC | 22:00 | |
*** edmondsw has joined #openstack-security | 22:04 | |
*** austin987 has joined #openstack-security | 22:04 | |
*** mvaldes has quit IRC | 22:09 | |
*** ametts has quit IRC | 22:10 | |
*** austin987 has quit IRC | 22:18 | |
openstackgerrit | Michael Dong proposed openstack/syntribos: Json formatter now outputs data according to findings schema https://review.openstack.org/304916 | 22:23 |
*** ninag has quit IRC | 22:25 | |
*** bpokorny_ has joined #openstack-security | 22:29 | |
*** bpokorny_ has quit IRC | 22:30 | |
*** bpokorny_ has joined #openstack-security | 22:30 | |
*** bpokorny has quit IRC | 22:33 | |
*** mdong has quit IRC | 22:45 | |
*** gmurphy_ has left #openstack-security | 22:48 | |
*** jamielennox is now known as jamielennox|away | 22:58 | |
*** jass93 has joined #openstack-security | 23:00 | |
*** bpokorny_ has quit IRC | 23:02 | |
*** jhfeng has quit IRC | 23:06 | |
*** jhfeng has joined #openstack-security | 23:14 | |
*** bpokorny has joined #openstack-security | 23:20 | |
openstackgerrit | Charles Neill proposed openstack/syntribos: Change license from block quotes to '#'s (Sphinx) https://review.openstack.org/306183 | 23:20 |
*** tmcpeak has quit IRC | 23:24 | |
*** bpokorny has quit IRC | 23:33 | |
*** bpokorny has joined #openstack-security | 23:33 | |
*** bpokorny has quit IRC | 23:33 | |
*** bpokorny has joined #openstack-security | 23:34 | |
*** jass93 has quit IRC | 23:39 | |
openstackgerrit | Charles Neill proposed openstack/syntribos: Docstrings for more Syntribos components https://review.openstack.org/304904 | 23:41 |
*** jhfeng has quit IRC | 23:41 | |
*** ccneill has quit IRC | 23:49 | |
*** rahulunair has quit IRC | 23:52 | |
*** jamielennox|away is now known as jamielennox | 23:59 |
Generated by irclog2html.py 2.14.0 by Marius Gedminas - find it at mg.pov.lt!