← Back to team overview

yahoo-eng-team team mailing list archive

[Bug 1459427] [NEW] VPNaaS: Certificate support for IPSec

 

Public bug reported:

Since Barbican provides certificate management/storage, and LBaaS has
successfully used the certificates, this RFE proposes to provide
certificate support for VPN IPSec site-to-site connections.

The expectation is that the user would use Barbican to create the
certificate, and then reference the certificate when creating an IPSec
connection.

This would require an REST/CLI API change to accept certificate ID vs
PSK, minor database change to store the certificate ID, *Swan driver
modifications to apply the certificate to the template, and
unit/functional test updates for these changes.

** Affects: neutron
     Importance: Undecided
         Status: New


** Tags: rfe vpnaas

-- 
You received this bug notification because you are a member of Yahoo!
Engineering Team, which is subscribed to neutron.
https://bugs.launchpad.net/bugs/1459427

Title:
  VPNaaS: Certificate support for IPSec

Status in OpenStack Neutron (virtual network service):
  New

Bug description:
  Since Barbican provides certificate management/storage, and LBaaS has
  successfully used the certificates, this RFE proposes to provide
  certificate support for VPN IPSec site-to-site connections.

  The expectation is that the user would use Barbican to create the
  certificate, and then reference the certificate when creating an IPSec
  connection.

  This would require an REST/CLI API change to accept certificate ID vs
  PSK, minor database change to store the certificate ID, *Swan driver
  modifications to apply the certificate to the template, and
  unit/functional test updates for these changes.

To manage notifications about this bug go to:
https://bugs.launchpad.net/neutron/+bug/1459427/+subscriptions


Follow ups

References