cloudstack/plugins
Rohit Yadav b46e4d4bbf
framework/cluster: improve cluster service and integration API service (#465)
- mTLS implementation for cluster service communication
- Listen only on the specified cluster node IP address instead of all interfaces
- Validate incoming cluster service requests are from peer management servers based on the server's certificate dns name which can be through global config - ca.framework.cert.management.custom.san
- Hardening of KVM command wrapper script execution
- Improve API server integration port check
- cloudstack-management.default: don't have JMX configuration if not needed. JMX is used for instrumentation; users who need to use it should enable it explicitly

Co-authored-by: Abhishek Kumar <abhishek.mrt22@gmail.com>
Co-authored-by: Wei Zhou <weizhou@apache.org>
Co-authored-by: Rohit Yadav <rohit.yadav@shapeblue.com>

Signed-off-by: Abhishek Kumar <abhishek.mrt22@gmail.com>
(cherry picked from commit 4f5561937c)
Signed-off-by: Rohit Yadav <rohit.yadav@shapeblue.com>
2024-07-09 09:03:40 +05:30
..
acl Update version to 4.18.1.1 (#417) 2024-04-08 09:27:57 -06:00
affinity-group-processors Update version to 4.18.1.1 (#417) 2024-04-08 09:27:57 -06:00
alert-handlers Update version to 4.18.1.1 (#417) 2024-04-08 09:27:57 -06:00
api Update version to 4.18.1.1 (#417) 2024-04-08 09:27:57 -06:00
backup Update version to 4.18.1.1 (#417) 2024-04-08 09:27:57 -06:00
ca/root-ca framework/cluster: improve cluster service and integration API service (#465) 2024-07-09 09:03:40 +05:30
database Update version to 4.18.1.1 (#417) 2024-04-08 09:27:57 -06:00
dedicated-resources Update version to 4.18.1.1 (#417) 2024-04-08 09:27:57 -06:00
deployment-planners Update version to 4.18.1.1 (#417) 2024-04-08 09:27:57 -06:00
event-bus Update version to 4.18.1.1 (#417) 2024-04-08 09:27:57 -06:00
ha-planners/skip-heurestics Update version to 4.18.1.1 (#417) 2024-04-08 09:27:57 -06:00
host-allocators/random Update version to 4.18.1.1 (#417) 2024-04-08 09:27:57 -06:00
hypervisors framework/cluster: improve cluster service and integration API service (#465) 2024-07-09 09:03:40 +05:30
integrations Update version to 4.18.1.1 (#417) 2024-04-08 09:27:57 -06:00
metrics Update version to 4.18.1.1 (#417) 2024-04-08 09:27:57 -06:00
network-elements FR72 - api,server: purge expunged resources (#405) 2024-06-19 12:59:50 +05:30
outofbandmanagement-drivers Update version to 4.18.1.1 (#417) 2024-04-08 09:27:57 -06:00
storage FR74: Mitigation for non-scalable ScaleIO clients (#447) 2024-06-27 18:47:50 +05:30
storage-allocators/random Update version to 4.18.1.1 (#417) 2024-04-08 09:27:57 -06:00
user-authenticators Apply upstream SAML sig check from #9219 (#463) 2024-07-01 09:33:40 +05:30
user-two-factor-authenticators Update version to 4.18.1.1 (#417) 2024-04-08 09:27:57 -06:00
pom.xml Update version to 4.18.1.1 (#417) 2024-04-08 09:27:57 -06:00