Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

https access broken #37

Open
graybeal opened this issue Jun 29, 2018 · 8 comments
Open

https access broken #37

graybeal opened this issue Jun 29, 2018 · 8 comments

Comments

@graybeal
Copy link
Contributor

I can't access COR on https://cor.esipfed.org, connection is refused.

@graybeal graybeal added bug ops operations labels Jun 29, 2018
@carueda
Copy link
Member

carueda commented Jun 29, 2018

AFAIK HTTPS access hasn't be set up at all, so I wouldn't consider this a bug (but an enhancement). But let's tag @abburgess here as an opportunity to push/learn about the plans for HTTPS access.

@graybeal
Copy link
Contributor Author

graybeal commented Jun 29, 2018 via email

@fgayanilo
Copy link
Collaborator

All Symantec PKIs are affected (e.g., digicert, geotrust, rapidssl,thawte, verisign, equifax); see https://security.googleblog.com/2018/03/distrust-of-symantec-pki-immediate.html

@carueda
Copy link
Member

carueda commented Oct 6, 2020

@lewismc Did you move this to some other tracker?

@brandonnodnarb
Copy link
Member

AFAICT, this also affects SWEET. I'm not sure what this entails, specifically, as it is unclear at present if it's a host/provider issue or can be toggled via DNS (or both)?

Could this be a bullet point at the next COR meeting? :)

@carueda
Copy link
Member

carueda commented Mar 7, 2022

@brandonnodnarb I think it is a matter of getting a certificate and install it for cor.esipfed.org in the appropriate apache config file. Likewise, a separate certificate would be needed for sweetontology.net.

@graybeal
Copy link
Contributor Author

I think I will need to get some support from ESIP so I can make appropriate changes in the AWS environment, but not 100% sure of that. I haven't pursued getting a better role on the AWS environment (my current role/authority is very limited) because they were so swamped for the summer meeting, but it's on my list.

@fgayanilo
Copy link
Collaborator

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

6 participants