Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Improvement] Add ability to honor certificate revocation list when verify_https_client is enabled #2996

Closed
pznamensky opened this issue Aug 9, 2017 · 2 comments

Comments

@pznamensky
Copy link

It would be great to have an ability to manage clients certificates.
And traditional method for this case is certificate revocation.
For now there is no way to manage user's certificate. In fact current implementation is like a "master-password" that you can't change.

@dadgar
Copy link
Contributor

dadgar commented Aug 10, 2017

Hey @pznamensky,

Nomad 0.7 will be bring ACLs and you will be able to revoke tokens. This is the approach we will be recommending. mTLS on the HTTP is in my opinion a work around until ACLs.

Thanks,
Alex

@github-actions
Copy link

I'm going to lock this issue because it has been closed for 120 days ⏳. This helps our maintainers find and focus on the active issues.
If you have found a problem that seems similar to this, please open a new issue and complete the issue template so we can capture all the details necessary to investigate further.

@github-actions github-actions bot locked as resolved and limited conversation to collaborators Dec 10, 2022
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants