Skip to content
Open
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
27 changes: 27 additions & 0 deletions cf-deployment.yml
Original file line number Diff line number Diff line change
Expand Up @@ -2047,6 +2047,8 @@ variables:
common_name: blobstore.service.cf.internal
alternative_names:
- blobstore.service.cf.internal
extended_key_usage:
- server_auth
- name: blobstore_public
type: certificate
update_mode: converge
Expand All @@ -2055,6 +2057,8 @@ variables:
alternative_names:
- "blobstore.((system_domain))"
ca: service_cf_internal_ca
extended_key_usage:
- server_auth
- name: diego_auctioneer_client
type: certificate
update_mode: converge
Expand Down Expand Up @@ -2257,6 +2261,8 @@ variables:
- log-cache
- log-cache.((system_domain))
- "*.log-cache.((system_domain))"
extended_key_usage:
- server_auth
- name: log_cache_proxy_tls
type: certificate
update_mode: converge
Expand All @@ -2265,6 +2271,9 @@ variables:
common_name: localhost
alternative_names:
- localhost
extended_key_usage:
- client_auth
- server_auth
- name: syslog_agent_log_cache_tls
type: certificate
update_mode: converge
Expand Down Expand Up @@ -2298,6 +2307,8 @@ variables:
alternative_names:
- "((system_domain))"
- "*.((system_domain))"
extended_key_usage:
- server_auth
- name: routing_api_ca
type: certificate
options:
Expand Down Expand Up @@ -2335,6 +2346,8 @@ variables:
common_name: uaa.service.cf.internal
alternative_names:
- uaa.service.cf.internal
extended_key_usage:
- server_auth
- name: uaa_login_saml
type: certificate
update_mode: converge
Expand Down Expand Up @@ -2370,6 +2383,8 @@ variables:
alternative_names:
- "api.((system_domain))"
- cloud-controller-ng.service.cf.internal
extended_key_usage:
- server_auth
- name: cc_bridge_tps
type: certificate
update_mode: converge
Expand Down Expand Up @@ -2459,6 +2474,8 @@ variables:
common_name: gorouter_lb_health_tls
alternative_names:
- gorouter.service.cf.internal
extended_key_usage:
- server_auth
- name: tcp_router_backend_tls
type: certificate
options:
Expand All @@ -2475,6 +2492,8 @@ variables:
common_name: tcp_router_lb_health_tls
alternative_names:
- tcp-router.service.cf.internal
extended_key_usage:
- server_auth
- name: credhub_ca
type: certificate
options:
Expand All @@ -2488,6 +2507,8 @@ variables:
alternative_names:
- credhub.service.cf.internal
- credhub.((system_domain))
extended_key_usage:
- server_auth
- name: ssh_proxy_backends_tls
type: certificate
options:
Expand Down Expand Up @@ -2526,6 +2547,8 @@ variables:
common_name: sql-db.service.cf.internal
alternative_names:
- sql-db.service.cf.internal
extended_key_usage:
- server_auth

- name: loggregator_rlp_gateway_tls
type: certificate
Expand All @@ -2536,6 +2559,8 @@ variables:
alternative_names:
- log-stream.((system_domain))
- log-api.service.cf.internal
extended_key_usage:
- server_auth

- name: loggregator_trafficcontroller_tls
type: certificate
Expand All @@ -2546,6 +2571,8 @@ variables:
alternative_names:
- doppler.((system_domain))
- log-api.service.cf.internal
extended_key_usage:
- server_auth

- name: metric_scraper_ca
type: certificate
Expand Down
2 changes: 2 additions & 0 deletions operations/test/add-oidc-provider.yml
Original file line number Diff line number Diff line change
Expand Up @@ -203,3 +203,5 @@
common_name: uaa-oidc.service.cf.internal
alternative_names:
- uaa-oidc.service.cf.internal
extended_key_usage:
- server_auth
2 changes: 2 additions & 0 deletions operations/test/enable-nfs-test-ldapserver.yml
Original file line number Diff line number Diff line change
Expand Up @@ -46,3 +46,5 @@
common_name: nfstestldapserver.service.cf.internal
alternative_names:
- nfstestldapserver.service.cf.internal
extended_key_usage:
- server_auth
2 changes: 2 additions & 0 deletions operations/use-haproxy.yml
Original file line number Diff line number Diff line change
Expand Up @@ -52,4 +52,6 @@
- '*.((system_domain))'
ca: haproxy_ca
common_name: haproxySSL
extended_key_usage:
- server_auth
type: certificate
8 changes: 8 additions & 0 deletions operations/use-metric-store.yml
Original file line number Diff line number Diff line change
Expand Up @@ -227,6 +227,8 @@
- '*.metric-store.((system_domain))'
ca: service_cf_internal_ca
common_name: metric-store
extended_key_usage:
- server_auth
type: certificate
- type: replace
path: /variables/name=metric_store_internode?
Expand All @@ -250,6 +252,8 @@
- localhost
ca: metric_store_ca
common_name: localhost
extended_key_usage:
- server_auth
type: certificate
update_mode: converge
- type: replace
Expand All @@ -261,6 +265,8 @@
- metric-store
ca: metric_scraper_ca
common_name: metric-store
extended_key_usage:
- server_auth
type: certificate
update_mode: converge
- type: replace
Expand All @@ -272,5 +278,7 @@
- metric-store-client
ca: metric_scraper_ca
common_name: metric-store-client
extended_key_usage:
- client_auth
type: certificate
update_mode: converge