Security Guide - Intro to SSL/TLS PKI overview

Bug #1411327 reported by N Dillon
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
OpenStack Security Guide Documentation
Fix Released
Low
Rahul U Nair

Bug Description

Current description of PKI is interesting, personally would prefer the descriptions of the core components be a bit more specific and also not a fan of the 'Relying party' 'trusting' as certs should be validated up the chain, against a crl and expiry checked.

-----------------------------------
Built: 2015-01-09T08:06:55 00:00
git SHA: 6adcc8b79c64aac5c365326f863368096b4677ba
URL: http://docs.openstack.org/security-guide/content/introduction-to-ssl-tls.html
source File: file:/home/jenkins/workspace/security-doc-tox-doc-publishdocs/security-guide/section_introduction-to-ssl-tls.xml
xml:id: introduction-to-ssl-tls

Tags: sec-guide
Changed in openstack-manuals:
assignee: nobody → Shellee Arnold (shellee-arnold)
Revision history for this message
Lana (loquacity) wrote :

Hi Shellee, it might be a good idea if you can provide some suggested verbiage here, to help our writers a little more :)

Changed in openstack-manuals:
status: New → Confirmed
importance: Undecided → Low
N Dillon (sicarie)
tags: added: sec-guide
Changed in openstack-manuals:
assignee: Shellee Arnold (shellee-arnold) → OpenStack Security Group (openstack-ossg)
assignee: OpenStack Security Group (openstack-ossg) → nobody
N Dillon (sicarie)
Changed in openstack-manuals:
assignee: nobody → N Dillon (sicarie)
Revision history for this message
Robert Clark (robert-clark) wrote :

So the Relying Party etc is techincally correct, NIST-style language, it could be made more developer friendly. How often do we talk about servers and clients rather than relying parties....

Revision history for this message
N Dillon (sicarie) wrote :

Absolutely, I should clarify I meant connecting those terms to the more commonly used ones - and I'm not at all sure the list in the intro to tls/ssl section is where it could be either.

jzx (xuange)
Changed in openstack-manuals:
assignee: N Dillon (sicarie) → Jizhaoxuan (xuange)
jzx (xuange)
Changed in openstack-manuals:
assignee: Jizhaoxuan (xuange) → nobody
Ian Cordasco (icordasc)
affects: openstack-manuals → ossp-security-documentation
Changed in ossp-security-documentation:
assignee: nobody → Rahul U Nair (rahulunair)
Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Fix proposed to security-doc (master)

Fix proposed to branch: master
Review: https://review.openstack.org/445237

Changed in ossp-security-documentation:
status: Confirmed → In Progress
Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Fix merged to security-doc (master)

Reviewed: https://review.openstack.org/445237
Committed: https://git.openstack.org/cgit/openstack/security-doc/commit/?id=9ade335acd629450c12dad529109c5351f4c1ba8
Submitter: Jenkins
Branch: master

commit 9ade335acd629450c12dad529109c5351f4c1ba8
Author: Rahul Nair <email address hidden>
Date: Mon Mar 13 17:54:38 2017 -0500

    Modify introduction to SSL TLS

    Modifying introduction to SSL TLS, explaining the `core components`
    section in detail. Also, modified the definition for `relying party`.

    Change-Id: I31008d4bcb69f3061658587030960b464ead579d
    Closes-Bug: #1411327
    Implements: blueprint sec-guide-overhaul

Changed in ossp-security-documentation:
status: In Progress → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.