When TLS everywhere is enabled, mongodb fails cause it's missing the CA

Bug #1710162 reported by Juan Antonio Osorio Robles
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
tripleo
Fix Released
High
Juan Antonio Osorio Robles

Bug Description

mongodb requires a CA certificate in order to serve TLS. Else it fails. only the cert/key PEM file is configured.

This is the error:
warning: No SSL certificate validation can be performed since no CA file has been provided; please specify an sslCAFile parameter

description: updated
Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Fix proposed to tripleo-heat-templates (master)

Fix proposed to branch: master
Review: https://review.openstack.org/492992

Changed in tripleo:
assignee: nobody → Juan Antonio Osorio Robles (juan-osorio-robles)
status: New → In Progress
Changed in tripleo:
importance: Undecided → High
milestone: none → pike-rc1
Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Fix merged to tripleo-heat-templates (master)

Reviewed: https://review.openstack.org/492992
Committed: https://git.openstack.org/cgit/openstack/tripleo-heat-templates/commit/?id=0d8a3399eb4cc5cd40a85a323990e710002a1624
Submitter: Jenkins
Branch: master

commit 0d8a3399eb4cc5cd40a85a323990e710002a1624
Author: Juan Antonio Osorio Robles <email address hidden>
Date: Fri Aug 11 16:07:13 2017 +0300

    TLS everywhere: Configure CA for mongodb

    It wasn't being configured, thus making mongodb fail.

    Change-Id: If0d7513aacfa74493a9747440fb97f915a77db84
    Closes-Bug: #1710162

Changed in tripleo:
status: In Progress → Fix Released
Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Fix included in openstack/tripleo-heat-templates 7.0.0.0rc1

This issue was fixed in the openstack/tripleo-heat-templates 7.0.0.0rc1 release candidate.

To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.