Details
-
Bug
-
Resolution: Fixed
-
Major
-
6.6.0
-
Untriaged
-
1
-
Unknown
Description
The UI currently has a check box for "enable node-to-node encryption" when starting cluster. However, I'm not sure there is a UI security settings, which enables setting cluster encryption level.
Cluster encryption levels are:
"control": Only control messages minus data(in buckets) are encrypted.
"all": all data is encrypted on the cluster.
"strict": all data is encrypted plus disable all the non-ssl ports on non-loopback interfaces.
They can be set as below, only when all the nodes in the cluster have node-2-node encryption enabled.
curl -sX POST -u Administrator:password http://localhost:9000/settings/security -d "clusterEncryptionLevel=strict" |
Attachments
Issue Links
For Gerrit Dashboard: MB-43151 | ||||||
---|---|---|---|---|---|---|
# | Subject | Branch | Project | Status | CR | V |
158439,77 | MB-43151: Add option for cluster encryption level in Security page. | cheshire-cat | ns_server | Status: MERGED | +2 | +1 |
158960,1 | MB-43151: Add option for choosing cluster encryption level in Security page. | master | ns_server | Status: ABANDONED | 0 | 0 |
159694,1 | Merge remote-tracking branch 'couchbase/cheshire-cat' | master | ns_server | Status: MERGED | +2 | +1 |
162654,3 | MB-43151: Delete unused file. | master | ns_server | Status: MERGED | +2 | +1 |