@cloudstack.apache.org
Onderwerp: Re: Console proxy SSL
Hi Jimmy,
The below article might help you, you are using the wildcard certificate right?
https://www.shapeblue.com/securing-cloudstack-4-11-with-https-tls/
-Jithin
From: Jimmy Huybrechts
Date: Wednesday, 8 November 2023 at 9:52 PM
To
Hi Jimmy,
The below article might help you, you are using the wildcard certificate right?
https://www.shapeblue.com/securing-cloudstack-4-11-with-https-tls/
-Jithin
From: Jimmy Huybrechts
Date: Wednesday, 8 November 2023 at 9:52 PM
To: [email protected]
Subject: Console proxy SSL
Hi,
So I’ve been setting up SSL for the management host and the console proxy but
on the console proxy it’s not working.
I uploaded the SSL files over the GUI, made the adjustments in the management
server properties file and restarted it. The management server has a valid ssl
now.
I changed
awesome, destroying it was the way to make it work, thanks Wei , you
saved my life.
thanks a lot :)
On Fri, Aug 11, 2023 at 11:40 AM Wei ZHOU wrote:
> Hi,
>
> Just destroy it, cloudstack will create a new one. The vm console will be
> unavailable until the new CPVM is running (~2 mins)
>
> -Wei
Hi,
Just destroy it, cloudstack will create a new one. The vm console will be
unavailable until the new CPVM is running (~2 mins)
-Wei
On Fri, 11 Aug 2023 at 11:38, Francisco Arencibia Quesada <
[email protected]> wrote:
> Could you explain to me how to recreate CPVM without risks :
Could you explain to me how to recreate CPVM without risks :)
thanks
On Fri, Aug 11, 2023 at 10:26 AM Wei ZHOU wrote:
> Hi,
>
> Which cloudstack version do you use ?
>
> It would be good to double check the global settings, certificates (in the
> keystore table), restart management server and
I have 4.11.2.0 version , I have restarted management server but again
https is closed
[image: Screenshot from 2023-08-11 10-28-53.png]
On Fri, Aug 11, 2023 at 10:26 AM Wei ZHOU wrote:
> Hi,
>
> Which cloudstack version do you use ?
>
> It would be good to double check the global settings, cert
Hi,
Which cloudstack version do you use ?
It would be good to double check the global settings, certificates (in the
keystore table), restart management server and recreate CPVM.
-Wei
On Fri, 11 Aug 2023 at 10:10, Francisco Arencibia Quesada <
[email protected]> wrote:
> Thanks We
Thanks Wei, I did that before and I still have the same problem, no way to
open 443 :(,
any other solution?
Regards
On Fri, Aug 11, 2023 at 10:00 AM Wei ZHOU wrote:
> Hi,
>
> You may refer to
> https://www.shapeblue.com/securing-cloudstack-4-11-with-https-tls/
>
> -Wei
>
> On Fri, 11 Aug 2023 a
Hi,
You may refer to
https://www.shapeblue.com/securing-cloudstack-4-11-with-https-tls/
-Wei
On Fri, 11 Aug 2023 at 09:57, Francisco Arencibia Quesada <
[email protected]> wrote:
> Good morning guys,
>
> I have another problem, and I have done kind of everything and nothing
> works
Good morning guys,
I have another problem, and I have done kind of everything and nothing works
http://123-22-22-44.mydomain.com -current proxy console , port 80
https://123-22-22-44.mydomain.com - what i want to achieve , but I don't
know how to enable port 443
I have enabled SSL in global s
[email protected]
Betreff: Re: console proxy ssl offloading
See if you can get any inspiration from this guy:
https://leo.leung.xyz/wiki/CloudStack#Traefik (that's just the proxying
subsection, but best read the whole SSL thing).
---
Nux
www.nux.ro
On 2023-01-02 21:16, [email protected] wrote:
> Hello
See if you can get any inspiration from this guy:
https://leo.leung.xyz/wiki/CloudStack#Traefik (that's just the proxying
subsection, but best read the whole SSL thing).
---
Nux
www.nux.ro
On 2023-01-02 21:16, [email protected] wrote:
Hello everyone,
first of all a happy new year to all of you!
Hi,
Have you uploaded the SSL certificate in cloudstack ?
You can refer to
https://www.shapeblue.com/securing-cloudstack-4-11-with-https-tls/
-Wei
On Mon, 2 Jan 2023 at 22:18, wrote:
> Hello everyone,
>
>
>
> first of all a happy new year to all of you! :-)
>
>
>
> I am doing some kind of PoC
Hello everyone,
first of all a happy new year to all of you! :-)
I am doing some kind of PoC and want to use a load balancer in front of the
console proxy and the secondary storage vm to offload ssl connections. I do
not get it to work.
I am using a load balancer on a public IP where "c
eme will be enforced is mgmt server is
> accessed over https://). This can be used for doing out-of-band SSL
> termination, for ex. using a nginx proxy.
> >
> >
> > Regards.
> >
> > ____
> > From: Mevludin Blazevic
> > Sent
Thursday, November 25, 2021 23:56
To: [email protected]
Subject: Setting up a DNS Name for console proxy ssl connection
Hi all,
is it enough to define just a DNS name for the console proxys public ip
address for enabling SSL? Let's say you define cpvm.mydomain.com as the
DNS name fo
band SSL termination, for ex.
using a nginx proxy.
Regards.
From: Mevludin Blazevic
Sent: Thursday, November 25, 2021 23:56
To: [email protected]
Subject: Setting up a DNS Name for console proxy ssl connection
Hi all,
is it enough to define just a
Hi all,
is it enough to define just a DNS name for the console proxys public ip
address for enabling SSL? Let's say you define cpvm.mydomain.com as the
DNS name for the console proxy and also set this in the configs
"consoleproxy.url.domain" and "consoleproxy.sslEnabled" and upload an
appropr
Message-
From: Andrija Panic
Sent: Thursday, July 1, 2021 4:22 PM
To: users
Subject: Re: Console Proxy & SSL
Hi Mike,
certificate for securing UI and the certificate for securing access to
Console of the VM (i.e. securing HTTPS access from browser to the public IP
of the CPVM/SSVM) a
> > for local address=/10.#.#.#:8250, remote address=/10.#.#.#:36082.
> > 2021-07-01 13:23:17,464 ERROR [c.c.u.n.Link]
> > (AgentManager-SSLHandshakeHandler-4:null) (logid:) SSL error caught
> during
> > wrap data: Empty server certificate chain, for local
> > addre
gt; wrap data: Empty server certificate chain, for local
> address=/10.#.#.#:8250, remote address=/10.#.#.##:36084.
>
>
>
>
> From: Corey, Mike
> Sent: Thursday, July 1, 2021 10:33 AM
> To: users
> Subject: [CAUTION] Console Proxy & SSL
>
> Hi,
>
hain, for local address=/10.#.#.#:8250, remote
address=/10.#.#.##:36084.
From: Corey, Mike
Sent: Thursday, July 1, 2021 10:33 AM
To: users
Subject: [CAUTION] Console Proxy & SSL
Hi,
I could use some clarification here on TLS/SSL usage. I’ve secured my ACS UI
with a CA issued certificat
Console Proxy SSL Certificate base on this page:
http://docs.cloudstack.apache.org/en/latest/adminguide/systemvm.html#using-a-ssl-certificate-for-the-console-proxy
I have created the wildcard CA issued certificate as *. along with
the unencrypted key per the steps on above wiki page.
After the
_
> From: Cloud List
> Sent: Saturday, December 26, 2020 09:42
> To: [email protected] ; dev <
> [email protected]>
> Subject: SSVM and CPVM agent unable to start after console proxy SSL
> certificate update
>
> Hi,
>
> Mer
___
From: Cloud List
Sent: Saturday, December 26, 2020 09:42
To: [email protected] ; dev
Subject: SSVM and CPVM agent unable to start after console proxy SSL
certificate update
Hi,
Merry Christmas to all.
We are using Cloudstack with KVM hypervisor. Since our console proxy SSL
Probably try destroying them once? Any warn or error message in mgt logs or
ssvm /var/log/messages?
Sent from my iPhone
> On 26-Dec-2020, at 5:12 AM, Cloud List wrote:
>
> Hi,
>
> Merry Christmas to all.
>
> We are using Cloudstack with KVM hypervisor. Since
Hi,
Merry Christmas to all.
We are using Cloudstack with KVM hypervisor. Since our console proxy SSL
certificate has expired, we updated our new SSL certificate using below
method:
http://docs.cloudstack.apache.org/projects/cloudstack-administration/en/4.9/systemvm.html#using-a-ssl-certificate
I had the exact same issue Konstantinos, but by URL encoding the
certificates they all were accepted and then functioned correctly.
- Ian
On Tue, May 6, 2014 at 10:29 AM, Konstantinos Karampogias <
[email protected]> wrote:
> I was also able to upload the root certificate
I was also able to upload the root certificate and the intermediate
certificate using exactly
the script in this link
http://www.chipchilders.com/blog/2013/1/2/undocumented-feature-using-certificate-chains-in-cloudstack.html
I was not able to put my certificate and private key using the script,
bu
I was able to get it all to work using the API.
I followed Chip's advice
http://www.chipchilders.com/blog/2013/1/2/undocumented-feature-using-certificate-chains-in-cloudstack.html
The difference is is that I'm using my own CloudStack API wrapper in PHP
and the certificates and private key needed
Yes... I have changed manually id in keystore tables.
1 for root cert
2 for intermediate CA
3 for certificate
On Tue, May 6, 2014 at 10:47 AM, Amogh Vasekar wrote:
> Can you please outline the steps in uploading intermediate and root
> certificates? Specifically, was the "id" parameter set (1
Can you please outline the steps in uploading intermediate and root
certificates? Specifically, was the "id" parameter set (1 for root, 2 for
intermediate_ca_1 etc..)
Amogh
On 5/5/14 10:10 PM, "Gopala Krishnan" wrote:
>Amogh,
>
>Yes.. I am used Cloudstack 4.2 and uploaded root and intermediate
Amogh,
Yes.. I am used Cloudstack 4.2 and uploaded root and intermediate CA
certificate as per order. But still not console accessible.
Any idea?
On Sat, May 3, 2014 at 11:58 PM, Amogh Vasekar wrote:
> Hi,
>
> Which version are you on? Also, did you upload the root and intermediate
> certifi
Hi,
Which version are you on? Also, did you upload the root and intermediate
certificates (if any)?
Amogh
On 5/3/14 3:38 AM, "Gopala Krishnan" wrote:
>Hi,
>
>I have tried to change realhostip.com for console proxy. I have created
>SSL
>certificate with wildcard SSL and updated as per the cloud
Hi,
I have tried to change realhostip.com for console proxy. I have created SSL
certificate with wildcard SSL and updated as per the cloudstack document.
http://docs.cloudstack.apache.org/projects/cloudstack-administration/en/latest/systemvm.html#console-proxy
Its not working.. I have done the f
Self-signed is fine, just need to store it in the keystone as described on
https://cwiki.apache.org/confluence/display/CLOUDSTACK/Enabling+SSL+in+the+CloudStack+UI
On Nov 5, 2013, at 10:05 AM, Paulo Ricardo
wrote:
> Hello everybody,
>
> After I generate a new 2048-bit private key and generate
Hello everybody,
After I generate a new 2048-bit private key and generate a new certificate
CSR, do I need purchase a Certificate SSL? Or may I do a Certificate SSL
self signed?
Thanks,
Paulo.
playing with it a bit, and before you do so... check the
formatting of the rows in the table before you change them.
>
> -Original Message-
> From: Pranav Saxena [mailto:[email protected]]
> Sent: Friday, June 21, 2013 9:41 AM
> To: [email protected]
> S
4.1.0 for an impending
deployment next week, and this is the last roadblock.
Thanks again!
-WPR
-Original Message-
From: Pranav Saxena [mailto:[email protected]]
Sent: Friday, June 21, 2013 9:41 AM
To: [email protected]
Subject: RE: Console Proxy SSL
You are getting a NPE
Ramsay [mailto:[email protected]]
Sent: Friday, June 21, 2013 7:07 PM
To: [email protected]
Subject: RE: Console Proxy SSL
>> Greetings,
>>
>> We just completed a clean install of 4.1.0. I was able to
>> successfully upload a custom certificate for
>> Greetings,
>>
>> We just completed a clean install of 4.1.0. I was able to successfully
>> upload a custom certificate for use by the console proxy machines in
>> our old
>> 4.0.1 environment, but now I cannot get it to work for the life of me
>> in 4.1.0.
>>
>> The UI just says "failed to
On Fri, Jun 21, 2013 at 08:33:44AM -0400, Billy Ramsay wrote:
> Greetings,
>
> We just completed a clean install of 4.1.0. I was able to successfully
> upload a custom certificate for use by the console proxy machines in our old
> 4.0.1 environment, but now I cannot get it to work for the life of
Greetings,
We just completed a clean install of 4.1.0. I was able to successfully
upload a custom certificate for use by the console proxy machines in our old
4.0.1 environment, but now I cannot get it to work for the life of me in
4.1.0.
The UI just says "failed to update", as usual. I also trie
44 matches
Mail list logo