openstack-ansible-galera_se.../releasenotes/notes/additional-tls-options-14b7e1a435581887.yaml
Jimmy McCrory 3f02976760 Additional TLS configuration options
Add variables `galera_require_secure_transport` and `galera_tls_version`
for requiring encrypted connections to the server and providing the list
of permitted protocols of those connections when `galera_use_ssl` is
enabled.

Change-Id: I28c548a5ee778c4957dc73e3547d585344755c0f
Depends-On: I6b77c828d251aeee53b83404e7e3131e3f61cbb1
Depends-On: I23d839e75b202d0400aeefe6e98c429e16ecd37e
2024-03-11 11:02:48 -07:00

10 lines
380 B
YAML

---
upgrade:
- |
Additional variables are available when MariaDB is configured to use TLS,
enabled by setting ``galera_use_ssl`` to ``true``.
``galera_require_secure_transport`` to require that all client connections
are encrypted, defaulting to false.
``galera_tls_version`` to provide a list of accepted TLS protocols,
defaulting to 'TLSv1.2,TLSv1.3'.