[tahoe-lafs-trac-stream] [Tahoe-LAFS] #3571: Should grid-manager accept only "its" certificates?

Tahoe-LAFS trac at tahoe-lafs.org
Mon Dec 21 05:09:05 UTC 2020


#3571: Should grid-manager accept only "its" certificates?
----------------------------+---------------------------
 Reporter:  meejah          |          Owner:
     Type:  enhancement     |         Status:  new
 Priority:  normal          |      Milestone:  undecided
Component:  code-nodeadmin  |        Version:  n/a
 Keywords:  grid-manager    |  Launchpad Bug:
----------------------------+---------------------------
 When adding a grid-manager certificate to a Tahoe configuration with the
 "tahoe admin add-grid-manager-cert" command, the identify of the
 certificate is not checked.

 It may be desirable to check if the public-key in the certificate matches
 the server's public-key. It probably makes sense to WARN only (as the
 operator may be getting ready to change their public key .. or for some
 other reason .. and could edit the config by hand anyway).

--
Ticket URL: <https://tahoe-lafs.org/trac/tahoe-lafs/ticket/3571>
Tahoe-LAFS <https://Tahoe-LAFS.org>
secure decentralized storage


More information about the tahoe-lafs-trac-stream mailing list