You are viewing an old version of this page. View the current version.

Compare with Current View Page History

« Previous Version 12 Next »

Bug Reference

TODO

Introduction

SSL Offloading feature allows loadbalancers to handle encryption/decryption of HTTP(s) traffic giving plaintext HTTP to the backend servers freeing them from the resource intensive task of handling encryption/decryption. Major loadblancers like the Netscaler and F5 have this functionality.

Goals

  1. A user should be able to create/update/delete SSL certs for his account.
  2. Certificates can be searched by using either the certificate ID or the account ID.
  3. Attach/Remove a certificate from a loadbalancers which support SSL offload feature.
  4. Add support for Netscaler to use this feature.

References

TODO

Document History

Version

Author

Date

Changes

V1.0

Syed Ahmed

07-Oct-2013

Initial Draft

Functional requirements & non-requirements

  1. Introduce a new entity SSLCerts linked to a user account
  2. Users should be able to Add/Delete/List certificates linked to their account
  3. Admin should be able to list all the certificates for all accounts
  4. When creating a loadbalancer if the public port is 443 and the private port is 80, then
    • if the loadbalancer device supports SSL offloading,
      • the loadbalncer created should be of type SSL
      • should allow binding/unbinding of a SSL certificate to it.
    • if the loadblancner device does not support ssl offlosd
      • trying to bind a certificate to it should generate an error
  1. Users should be able to attach/remove certificate from a

Architecture and Design description

TODO Document Design

Web Service APIs

New Webservice APIs

TODO

New parameters to existing APIs

TODO

UI flow

Right now, this feature will only be available via the API. UI support is not yet scoped.

IP Clearance

No external dependecies are being added for this feature. All code will be developed within Cloudstack’s scope.

  • No labels