Signed-off-by: Jiffin Tony Thottan <jthottan@redhat.com>
- rgw_crypt_vault_auth
- rgw_crypt_vault_addr
with_legacy: true
+# Enable TLS authentication rgw and vault
+- name: rgw_crypt_vault_verify_ssl
+ type: bool
+ level: advanced
+ desc: Should RGW verify the vault server SSL certificate.
+ default: true
+ services:
+ - rgw
+ with_legacy: true
- name: rgw_crypt_kmip_addr
type: str
level: advanced
secret_req.append_header("X-Vault-Namespace", vault_namespace);
}
+ secret_req.set_verify_ssl(cct->_conf->rgw_crypt_vault_verify_ssl);
+
res = secret_req.process(null_yield);
if (res < 0) {
ldout(cct, 0) << "ERROR: Request to Vault failed with error " << res << dendl;