Public bug reported: Since Barbican provides certificate management/storage, and LBaaS has successfully used the certificates, this RFE proposes to provide certificate support for VPN IPSec site-to-site connections.
The expectation is that the user would use Barbican to create the certificate, and then reference the certificate when creating an IPSec connection. This would require an REST/CLI API change to accept certificate ID vs PSK, minor database change to store the certificate ID, *Swan driver modifications to apply the certificate to the template, and unit/functional test updates for these changes. ** Affects: neutron Importance: Undecided Status: New ** Tags: rfe vpnaas -- You received this bug notification because you are a member of Yahoo! Engineering Team, which is subscribed to neutron. https://bugs.launchpad.net/bugs/1459427 Title: VPNaaS: Certificate support for IPSec Status in OpenStack Neutron (virtual network service): New Bug description: Since Barbican provides certificate management/storage, and LBaaS has successfully used the certificates, this RFE proposes to provide certificate support for VPN IPSec site-to-site connections. The expectation is that the user would use Barbican to create the certificate, and then reference the certificate when creating an IPSec connection. This would require an REST/CLI API change to accept certificate ID vs PSK, minor database change to store the certificate ID, *Swan driver modifications to apply the certificate to the template, and unit/functional test updates for these changes. To manage notifications about this bug go to: https://bugs.launchpad.net/neutron/+bug/1459427/+subscriptions -- Mailing list: https://launchpad.net/~yahoo-eng-team Post to : yahoo-eng-team@lists.launchpad.net Unsubscribe : https://launchpad.net/~yahoo-eng-team More help : https://help.launchpad.net/ListHelp