Skip to content

Removing deprecated SSL settings - #28622

Merged
kobelb merged 6 commits into
elastic:masterfrom
kobelb:remove-ssl-auto-enable
Jan 14, 2019
Merged

kobelb merged 6 commits into
elastic:masterfrom
kobelb:remove-ssl-auto-enable

Conversation

@kobelb

@kobelb kobelb commented Jan 11, 2019

Copy link
Copy Markdown
Contributor

Removing the ability to automatically enable SSL by only setting server.ssl.certificate and server.ssl.key, you're now required to set server.ssl.enabled. This has been deprecated for a while now.

This also removes the ability to use server.ssl.cert and requires that the user use server.ssl.certificate. This has also been deprecated for a while.

"Release Note: server.ssl.enabled must be explicitly set to enable https for the Kibana server."
"Release Note: server.ssl.cert is no longer valid, server.ssl.certificate must be used instead."

@kobelb kobelb added release_note:breaking Team:Security Platform Security: Auth, Users, Roles, Spaces, Audit Logging, etc t// labels Jan 11, 2019
@kobelb
kobelb requested review from azasypkin and legrego January 11, 2019 21:02
@elasticmachine

Copy link
Copy Markdown
Contributor

Pinging @elastic/kibana-security

@kobelb kobelb added the v7.0.0 label Jan 11, 2019
@elasticmachine

Copy link
Copy Markdown
Contributor

💔 Build Failed

@azasypkin

Copy link
Copy Markdown
Contributor

Looks like CI failures are legit

@azasypkin azasypkin left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM, with a green CI.

Comment thread docs/migration/migrate_7_0.asciidoc Outdated
[float]
=== kibana.yml setting `server.ssl.enabled` must be set to `true` to enable SSL
*Details:* Previously, if `server.ssl.certificate` and `server.ssl.key` were set, SSL would automatically be enabled.
It's now required that the user set `server.ssl.enabled` to true for this to occur.

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

typo: the user set --> the user sets?

@kobelb

kobelb commented Jan 14, 2019

Copy link
Copy Markdown
Contributor Author

Looks like CI failures are legit

Yeah... I forgot to update the tests, lemme do so here shortly.

@legrego legrego left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Optional docs update, otherwise LGTM pending green CI!

Comment thread docs/migration/migrate_7_0.asciidoc Outdated
Co-Authored-By: kobelb <brandon.kobel@gmail.com>
@elasticmachine

Copy link
Copy Markdown
Contributor

💚 Build Succeeded

@kobelb
kobelb merged commit fe5a083 into elastic:master Jan 14, 2019
@kobelb
kobelb deleted the remove-ssl-auto-enable branch January 14, 2019 20:38
patrykkopycinski pushed a commit to patrykkopycinski/kibana that referenced this pull request May 6, 2026
* Removing deprecated SSL settings

* Updating breaking changes doc

* Fixing documentation typo

* Fixing LegacyObjectToConfigAdapter tests

* Fixing transformDeprecations tests

* Updating docs

Co-Authored-By: kobelb <brandon.kobel@gmail.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

release_note:breaking Team:Security Platform Security: Auth, Users, Roles, Spaces, Audit Logging, etc t// v7.0.0

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants