concourse / concourse-bosh-deployment

A toolchain for deploying Concourse with BOSH.
Apache License 2.0
84 stars 154 forks source link

ensure postgres connections are secure between UAA, Credhub, and Conc… #210

Closed iplay88keys closed 4 years ago

iplay88keys commented 4 years ago

…ourse web

Closes #202

Signed-off-by: JT Archie jarchie@pivotal.io Co-authored-by: JT Archie jarchie@pivotal.io

jtarchie commented 4 years ago

We are going to update the PR to have opsfiles for securing the internal postgres which will affect the colocated jobs of UAA, Credhub, and BBR.

iplay88keys commented 4 years ago

@cirocosta We manually tested a secured Concourse deployment with BBR deployed with the appropriate TLS certs/keys. We had no issues backing up or restoring.

cirocosta commented 4 years ago

hey @matthewpereira, it'd probably be a good idea to have these ops files recommended as default (so that folks get "secure by default")