Project

General

Profile

Actions

Task #362

closed

Limit HTTP Method on accounting-d4s.d4science.org

Added by Luca Frosini almost 10 years ago. Updated over 8 years ago.

Status:
Closed
Priority:
Low
Assignee:
_InfraScience Systems Engineer
Category:
Application
Start date:
Jul 08, 2015
Due date:
Dec 31, 2016
% Done:

100%

Estimated time:
Infrastructure:
Production

Description

Only HTTP PUT Method should be allowed on accounting-d4s.d4science.org:5984 for the whole internet.

All the other HTTP methods for the moment must be allowed only for ISTI infrastructure. As soon as the Accounting will be fully operational, as Andrea Dell'Amico suggested we can use a different hostname for that machine and allow the access only from a limited predefined number of host (e.g. portals, ISTI network).


Related issues

Blocked by D4Science Infrastructure - Task #1265: Limit HTTP Method on accounting-d-d4s.d4science.orgClosed_InfraScience Systems EngineerOct 27, 2015Dec 31, 2016

Actions
Actions #1

Updated by Andrea Dell'Amico almost 10 years ago

Do you need this now? It can be done putting an haproxy instance in front of couchdb, and that's the plan for the production release.

I don't remember anything about the hostname change, btw.

Actions #2

Updated by Luca Frosini almost 10 years ago

No, I don't need it now. It is not urgent.

We discussed about to have only the PUT method accessible from everywhere for accounting-d4s.d4science.org URL and using a a different hostname (with the same haproxy instance or with a different one in different machine) for the whole CouchDB functionality (web access for admin as well).

I think this should be done when we will have a cluster and haproxy installed.
I opened a ticket just as reminder for both.

Actions #3

Updated by Luca Frosini over 9 years ago

  • Due date set to Sep 30, 2015
Actions #4

Updated by Luca Frosini over 9 years ago

  • Due date changed from Sep 30, 2015 to Oct 16, 2015
Actions #5

Updated by Luca Frosini over 9 years ago

  • Priority changed from Normal to Low
Actions #6

Updated by Luca Frosini over 9 years ago

  • Subject changed from Limit HTTP Method on accounting-d4s.d4science.org:5984 to Limit HTTP Method on accounting-d4s.d4science.org
  • Due date changed from Oct 16, 2015 to Dec 31, 2015

To start to work on this we need to synchronization.

Actions #7

Updated by Luca Frosini over 9 years ago

  • Blocked by Task #1265: Limit HTTP Method on accounting-d-d4s.d4science.org added
Actions #8

Updated by Luca Frosini over 9 years ago

  • Target version changed from zz - Accouting Facility to Enhance Accounting Security
Actions #9

Updated by Luca Frosini over 9 years ago

  • Due date changed from Dec 31, 2015 to Jan 31, 2016
Actions #10

Updated by Luca Frosini almost 9 years ago

  • Status changed from New to In Progress
Actions #11

Updated by Luca Frosini almost 9 years ago

  • Assignee changed from _InfraScience Systems Engineer to Luca Frosini
Actions #12

Updated by Luca Frosini almost 9 years ago

  • Due date changed from Jan 31, 2016 to Dec 31, 2016
Actions #13

Updated by Luca Frosini almost 9 years ago

  • Assignee changed from Luca Frosini to _InfraScience Systems Engineer
Actions #14

Updated by Luca Frosini almost 9 years ago

  • Status changed from In Progress to Rejected
Actions #15

Updated by Luca Frosini almost 9 years ago

The accounting is switching to CouchBase so the ticket became invalid. For this reason I set to Rejected

Actions #16

Updated by Luca Frosini almost 9 years ago

  • % Done changed from 0 to 100
Actions #17

Updated by Luca Frosini over 8 years ago

  • Status changed from Rejected to Closed
Actions

Also available in: Atom PDF

Add picture from clipboard (Maximum size: 8.91 MB)