Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Adds support for gRPC mTLS #8002

Draft
wants to merge 6 commits into
base: develop
Choose a base branch
from
Draft

Adds support for gRPC mTLS #8002

wants to merge 6 commits into from

Conversation

jackkav
Copy link
Contributor

@jackkav jackkav commented Sep 24, 2024

todo

  • update grpc-js to include rejectUnauthorized
  • wire up certs and setting
  • add test server with working TLS
  • figure out why rejectUnauthorized doesn't seem to work the same at for https
  • figure out why testing with rootCA.cert and client certs gives 14 ECONNRESET

when trying to connect over the wrong channelcredentials you get error 14
if you try to use grpcs and createSecureChannel with rejectUnuathorise off, you get the error below
14 No connection established. Last error: 1322851578048:error:10000410:SSL routines:OPENSSL_internal:SSLV3_ALERT_HANDSHAKE_FAILURE:../../third_party/boringssl/src/ssl/tls_record.cc:592:SSL alert number 40 (2024-10-07T10:32:48.409Z)

related #7248

https://itnext.io/how-to-setup-and-test-tls-in-grpc-grpc-web-1b67cc4413e6

closes INS-4536

@jackkav jackkav changed the title wire up ca and client certs to grpc creds Adds support for gRPC mTLS Sep 25, 2024
@jackkav jackkav mentioned this pull request Sep 25, 2024
1 task
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant