Add IP address to DNS SANs list #117
Merged
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Issue
Jira ticket: DPE-1532
To implement https://warthogs.atlassian.net/browse/DPE-1271 it’s needed that the TLS Server finds in the certificate the IP address of the unit that is connecting to it.
Currently, it’s not possible due to pgbackrest/pgbackrest#1977.
Solution
Add the IP address also to the DNS SANs list (like "DNS:1.2.3.4" entries).
Context
This charm library will be updated later in the VM charm repository.
Testing
Tested manually in the VM charm.
Release Notes
Add IP address to DNS SANs list.