Task #362
closed
Limit HTTP Method on accounting-d4s.d4science.org
Added by Luca Frosini almost 10 years ago.
Updated over 8 years ago.
Assignee:
_InfraScience Systems Engineer
Infrastructure:
Production
Description
Only HTTP PUT Method should be allowed on accounting-d4s.d4science.org:5984 for the whole internet.
All the other HTTP methods for the moment must be allowed only for ISTI infrastructure. As soon as the Accounting will be fully operational, as Andrea Dell'Amico suggested we can use a different hostname for that machine and allow the access only from a limited predefined number of host (e.g. portals, ISTI network).
Do you need this now? It can be done putting an haproxy instance in front of couchdb, and that's the plan for the production release.
I don't remember anything about the hostname change, btw.
No, I don't need it now. It is not urgent.
We discussed about to have only the PUT method accessible from everywhere for accounting-d4s.d4science.org URL and using a a different hostname (with the same haproxy instance or with a different one in different machine) for the whole CouchDB functionality (web access for admin as well).
I think this should be done when we will have a cluster and haproxy installed.
I opened a ticket just as reminder for both.
- Due date set to Sep 30, 2015
- Due date changed from Sep 30, 2015 to Oct 16, 2015
- Priority changed from Normal to Low
- Subject changed from Limit HTTP Method on accounting-d4s.d4science.org:5984 to Limit HTTP Method on accounting-d4s.d4science.org
- Due date changed from Oct 16, 2015 to Dec 31, 2015
To start to work on this we need to synchronization.
- Blocked by Task #1265: Limit HTTP Method on accounting-d-d4s.d4science.org added
- Target version changed from zz - Accouting Facility to Enhance Accounting Security
- Due date changed from Dec 31, 2015 to Jan 31, 2016
- Status changed from New to In Progress
- Assignee changed from _InfraScience Systems Engineer to Luca Frosini
- Due date changed from Jan 31, 2016 to Dec 31, 2016
- Assignee changed from Luca Frosini to _InfraScience Systems Engineer
- Status changed from In Progress to Rejected
The accounting is switching to CouchBase so the ticket became invalid. For this reason I set to Rejected
- % Done changed from 0 to 100
- Status changed from Rejected to Closed
Also available in: Atom
PDF