New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
使用gateway api , 支持mtls #900
Comments
想要尝试下,请帮忙分配下,感谢 @johnlanni |
@hanxiantao 好的,钉钉上联系一下我吧,交流一下实现细节,这块功能需要在 https://github.com/alibaba/higress/tree/feat/istio-1.19.0 这个分支上做 |
作为提issue的同学,我也想参与讨论 |
@alexzzh 我们在controller SIG里一起讨论吧 |
同步下最新信息: 看源码发现mtls目前应该已经满足,that's fine!
另外,我们这边整理了目前我们项目在ssl层相关配置,目前gateway api有部分尚未满足,再此列出来以作进一步讨论:
针对这些点将来的可行方案如下,各位可以提出不同意见以作改进: |
Why do you need it?
项目中需要使用gateway api,同时网关需要完成和客户端之间的tls卸载以及验证客户端证书(mtls)
How could it be?
what we want
使用 gateway api时,可以为不同的监听端口指定验证客户端的证书,形如:
The text was updated successfully, but these errors were encountered: