Add rate-limiting to ha-proxy configuration for public endpoints

Bug #1838437 reported by Nick Niehoff
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
OpenStack Cinder Charm
Triaged
Wishlist
Unassigned

Bug Description

Per the OpenStack security guide [1] rate-limiting should be enabled on the public OpenStack API endpoints. For HA deployments this could be done in the HAProxy configuration set by the charm.

[1] https://docs.openstack.org/security-guide/api-endpoints/api-endpoint-configuration-recommendations.html

Changed in charm-cinder:
importance: Undecided → Wishlist
status: New → Triaged
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.