geode-commits mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From dbar...@apache.org
Subject geode-native git commit: Update writeup of ssl properties to match current implementation
Date Fri, 21 Apr 2017 22:00:25 GMT
Repository: geode-native
Updated Branches:
  refs/heads/develop a286f1209 -> 32bd9e1e0


Update writeup of ssl properties to match current implementation


Project: http://git-wip-us.apache.org/repos/asf/geode-native/repo
Commit: http://git-wip-us.apache.org/repos/asf/geode-native/commit/32bd9e1e
Tree: http://git-wip-us.apache.org/repos/asf/geode-native/tree/32bd9e1e
Diff: http://git-wip-us.apache.org/repos/asf/geode-native/diff/32bd9e1e

Branch: refs/heads/develop
Commit: 32bd9e1e078b4f8a766767c70bc8591944d1b09c
Parents: a286f12
Author: Dave Barnes <dbarnes@pivotal.io>
Authored: Fri Apr 21 15:00:22 2017 -0700
Committer: Dave Barnes <dbarnes@pivotal.io>
Committed: Fri Apr 21 15:00:22 2017 -0700

----------------------------------------------------------------------
 .../security/security-systemprops.html.md.erb   |  8 ++++++--
 .../security/sslclientserver.html.md.erb        | 21 ++++++++++++--------
 2 files changed, 19 insertions(+), 10 deletions(-)
----------------------------------------------------------------------


http://git-wip-us.apache.org/repos/asf/geode-native/blob/32bd9e1e/docs/geode-native-docs/security/security-systemprops.html.md.erb
----------------------------------------------------------------------
diff --git a/docs/geode-native-docs/security/security-systemprops.html.md.erb b/docs/geode-native-docs/security/security-systemprops.html.md.erb
index a8db340..d219395 100644
--- a/docs/geode-native-docs/security/security-systemprops.html.md.erb
+++ b/docs/geode-native-docs/security/security-systemprops.html.md.erb
@@ -1,5 +1,5 @@
 ---
-title:  Security-Related System Properties (geode.properties)
+title:  Security-Related System Properties (gemfire.properties)
 ---
 
 <!--
@@ -19,7 +19,7 @@ See the License for the specific language governing permissions and
 limitations under the License.
 -->
 
-The table describes the security-related system properties in the `geode.properties` file
for native client authentication and authorization.
+The table describes the security-related system properties in the `gemfire.properties` file
for native client authentication and authorization.
 
 <a id="security__section_6DC4C72A2EEB432AA40DE97D438FD1E7"></a><a id="security__table_92A6A66523764199A19BCD66BA189921"></a>
 
@@ -62,6 +62,10 @@ The table describes the security-related system properties in the `geode.propert
 <td><code class="ph codeph">security-keystorepass</code></td>
 <td>Sets the password for the password-protected keystore.</td>
 </tr>
+<tr>
+<td><code class="ph codeph">ssl-cipher</code></td>
+<td>List of SSL ciphers in the form of a comma-separated list (default "any").</td>
+</tr>
 <tr class="odd">
 <td><code class="ph codeph">ssl-enabled-components</code></td>
 <td>Enables SSL-based client/server communication for the specified components, given
as a comma-separated list. Valid components are `all`, `cluster`, `gateway`, `jmx` , `locator`,
`server`, `web`.</td>

http://git-wip-us.apache.org/repos/asf/geode-native/blob/32bd9e1e/docs/geode-native-docs/security/sslclientserver.html.md.erb
----------------------------------------------------------------------
diff --git a/docs/geode-native-docs/security/sslclientserver.html.md.erb b/docs/geode-native-docs/security/sslclientserver.html.md.erb
index 35759b2..b3ac075 100644
--- a/docs/geode-native-docs/security/sslclientserver.html.md.erb
+++ b/docs/geode-native-docs/security/sslclientserver.html.md.erb
@@ -95,10 +95,15 @@ where _jdk-or-jre-path_ is the directory in which Java is installed.
 
 ## Step 4. Configure SSL properties in client and server properties files
 
-Configure SSL properties.
+Configure SSL properties. For details on the SSL properties available, see "Managing >
Security >
+SSL > Configuring SSL" in the server User Guide.  
 
-1.  In your client properties file (usually `geode.properties`), set `ssl-enabled-components`
to appropriate values (for example, `server,locator`) and set `ssl-keystore` and `ssl-truststore`
to point to your keystore files. See [Security-Related System Properties (geode.properties)](security-systemprops.html#security)
for a description of these properties.
-2.  On each locator, enable SSL and set the following SSL properties in the locator’s properties
file (usually `geode.properties`, but on the locator's host):
+On the client, the list of enabled components reflects the server’s configuration so the
client
+knows how it is expected to communicate with (for example) servers and locators. Paths to
keystore
+and truststore are local to the client.
+
+1.  In your client properties file (usually `gemfire.properties`), set `ssl-enabled-components`
to appropriate values (for example, `server,locator`) and set `ssl-keystore` and `ssl-truststore`
to point to your keystore files. See [Security-Related System Properties (gemfire.properties)](security-systemprops.html#security)
for a description of these properties.
+2.  On each locator, enable SSL and set the following SSL properties in the locator’s properties
file (usually `gemfire.properties`, but on the locator's host):
 
     ```
     ssl-enabled-components=server,locator
@@ -122,28 +127,28 @@ For details on stopping and starting locators and cache servers with
SSL, see [S
 
 **Example locator start command**
 
-Ensure that all required SSL properties are configured in your server's `geode.properties`
file. Then start your locator as follows:
+Ensure that all required SSL properties are configured in your server's `gemfire.properties`
file. Then start your locator as follows:
 
 ``` pre
 gfsh>start locator --name=my_locator --port=12345 --dir=. \
---security-properties-file=/path/to/your/geode.properties
+--security-properties-file=/path/to/your/gemfire.properties
 ```
 
 **Example locator stop command**
 
 ``` pre
 gfsh>stop locator --port=12345 \
---security-properties-file=/path/to/your/geode.properties
+--security-properties-file=/path/to/your/gemfire.properties
 ```
 
 **Example server start command**
 
-Again, ensure that all required SSL properties are configured in `geode.properties`. Then
start the server with:
+Again, ensure that all required SSL properties are configured in `gemfire.properties`. Then
start the server with:
 
 ``` pre
 gfsh>start server --name=my_server --locators=hostname[12345] \
 --cache-xml-file=server.xml --log-level=fine \
---security-properties-file=/path/to/your/geode.properties
+--security-properties-file=/path/to/your/gemfire.properties
 ```
 
 **Example server stop command**


Mime
View raw message