TLS certificates for services using cephadm

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hi all,

I've been doing some work on a new/migrated ceph cluster using cephadm and pacific. I'll be sending a few questions in separate emails to keep it organised.

I'm trying to secure my services managed by the cephadm orchestrator. I didn't have any problems with ceph managed directly using

ceph dashboard set-ssl-certificate[-key] `hostname` -i <certificate-[key]> (then disabling and enabling the dashboard)

This was run on each mgr host and the appropriate certificate was installed on the right manager daemon. How do I install the correct certificates into the correct container when using cephadm?

With cephadm, I'm also running the monitoring services in containers. How do I insert the correct certificate/key pair into the correct grafana container? This[1] seems to only work with one certificate/key pair per cluster but the container can be moved by the orchestrator.

Thanks!

[1] https://docs.ceph.com/en/pacific/cephadm/services/monitoring/#configuring-ssl-tls-for-grafana

_______________________________________________
ceph-users mailing list -- ceph-users@xxxxxxx
To unsubscribe send an email to ceph-users-leave@xxxxxxx



[Index of Archives]     [Information on CEPH]     [Linux Filesystem Development]     [Ceph Development]     [Ceph Large]     [Ceph Dev]     [Linux USB Development]     [Video for Linux]     [Linux Audio Users]     [Yosemite News]     [Linux Kernel]     [Linux SCSI]     [xfs]


  Powered by Linux