Details
-
Improvement
-
Status: In Progress
-
Major
-
Resolution: Unresolved
-
None
-
None
-
7: ARM arch? CMOS?, 9: R&D, leftovers, 11: Blogs, Training, leftovers
-
5
Description
We require that the LDAP CA be specified, implying we only really support a private PKI. There are however people who want to put their enterprise's authentication on the public internet and signed by a public CA, so we need to loosen the LDAP CA rules.
Attachments
Gerrit Reviews
Activity
Field | Original Value | New Value |
---|---|---|
Rank | Ranked higher |
Story Points | 1 | 5 |
Assignee | Simon Murray [ simon.murray ] | Alex Emery [ JIRAUSER26037 ] |
Sprint | 7: ARM arch? CMOS? [ 2023 ] |
Rank | Ranked lower |
Rank | Ranked higher |
Status | Open [ 1 ] | In Progress [ 3 ] |
Sprint | 7: ARM arch? CMOS? [ 2023 ] | 7: ARM arch? CMOS?, 9: R&D, leftovers [ 2023, 2041 ] |
Sprint | 7: ARM arch? CMOS?, 9: R&D, leftovers [ 2023, 2041 ] | 7: ARM arch? CMOS?, 9: R&D, leftovers, 11: Blogs, Training, leftovers [ 2023, 2041, 2062 ] |
Sprint | 7: ARM arch? CMOS?, 9: R&D, leftovers, 11: Blogs, Training, leftovers [ 2023, 2041, 2062 ] | 7: ARM arch? CMOS?, 9: R&D, leftovers, 11: Blogs, Training, leftovers, 13: Release [ 2023, 2041, 2062, 2098 ] |
Sprint | 7: ARM arch? CMOS?, 9: R&D, leftovers, 11: Blogs, Training, leftovers, 13: Release [ 2023, 2041, 2062, 2098 ] | 7: ARM arch? CMOS?, 9: R&D, leftovers, 11: Blogs, Training, leftovers [ 2023, 2041, 2062 ] |
Rank | Ranked higher |
Rank | Ranked lower |
Server maintains a trust store separate from `/etc/ssl/` so I don't think this is possible.
Multiple root CA support means users could just upload the CA they desired and achieve the same functionality