[jboss-jira] [JBoss JIRA] (WFCORE-3396) Provide certificate authority integration

Martin Choma (JIRA) issues at jboss.org
Wed Jul 11 09:04:00 EDT 2018


    [ https://issues.jboss.org/browse/WFCORE-3396?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=13603731#comment-13603731 ] 

Martin Choma commented on WFCORE-3396:
--------------------------------------

I think tests well cover the area. However it would be better if tests were located in WFCore/WF for testing Elytron subsystem part as well.

Several questions which pop up:
- what is maintability of mock  messages. For new version clone of test will be created?
- How are we going to deal with new versions of Lets Encrypt API. Does LE keep backward compatibility?

> Provide certificate authority integration
> -----------------------------------------
>
>                 Key: WFCORE-3396
>                 URL: https://issues.jboss.org/browse/WFCORE-3396
>             Project: WildFly Core
>          Issue Type: Feature Request
>          Components: Security
>    Affects Versions: 4.0.0.Alpha2
>            Reporter: Martin Choma
>            Assignee: Farah Juma
>
> Let's Encrypt provide API to fully automate (gain/renew) certificate retrieval using ACME protocol. Integrate this capability into wildfly.
> This can simplify administrator work. No need to perform certification renewal routine tasks.
> This is follow up on WFCORE-3305 and piece of bigger task "Simplify SSL configuration in wildfly". That said it is just "User experience" issue. Administrator still can work with Let's Encrypt by third party client and just reference wildfly to this certificate.
> [1] Latest draft: https://tools.ietf.org/html/draft-ietf-acme-acme-10



--
This message was sent by Atlassian JIRA
(v7.5.0#75005)


More information about the jboss-jira mailing list