scylladb / scylla-operator

The Kubernetes Operator for ScyllaDB
https://operator.docs.scylladb.com/
Apache License 2.0
332 stars 162 forks source link

Force TLS for ScyllaDB manager agent API #1772

Open tnozicka opened 7 months ago

tnozicka commented 7 months ago

ScyllaDB Manager agent uses token based AuthN/AuthZ but is running on HTTP only which risks the token being stolen while it travels through the network. For internal/local networks, the chances are lower but we should strive to do this securely and setup TLS for it.

scylla-operator-bot[bot] commented 2 months ago

The Scylla Operator project currently lacks enough contributors to adequately respond to all issues.

This bot triages un-triaged issues according to the following rules:

You can:

/lifecycle stale

scylla-operator-bot[bot] commented 1 month ago

The Scylla Operator project currently lacks enough contributors to adequately respond to all issues.

This bot triages un-triaged issues according to the following rules:

You can:

/lifecycle rotten

tnozicka commented 1 month ago

/remove-lifecycle rotten /triage accepted