Add SSL listener to RabbitMQ
Bug #1496001 reported by
Major Hayden
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
OpenStack-Ansible |
Fix Released
|
Wishlist
|
Major Hayden | ||
Kilo |
Fix Released
|
Wishlist
|
Major Hayden | ||
Trunk |
Fix Released
|
Wishlist
|
Major Hayden |
Bug Description
RabbitMQ currently only listens on 5672 without SSL. It would enhance security if there was a listener with SSL support on the default SSL port (5671) so that services could optionally communicate with RabbitMQ via SSL.
Changed in openstack-ansible: | |
assignee: | nobody → Major Hayden (rackerhacker) |
Changed in openstack-ansible: | |
status: | New → Confirmed |
importance: | Undecided → Wishlist |
To post a comment you must log in.
If I understand correctly, rabbit does not listen publicly, only on the container network. I agree with the idea of adding security everywhere we can, but if someone can listen on the container network, isn't it a bit pointless by then to be encrypting traffic?