Comments (7)
from ci.
After discussions with @shikamu, it turns out it's not necessary to secure this environment with https. It would be better but it is not extremely necessary. The importance of this issue is therefore very low.
from ci.
https://www.studytonight.com/jenkins/securing-jenkins
from ci.
The stuff we tried to integrate last Nov 15 2019 is now working with the jps manifest.
from ci.
There's also the following code to activate in ssl.conf
location / {
# we need a domain name for this:
#proxy_set_header Strict-Transport-Security "max-age=63072000; includeSubDomains; preload";
from ci.
ssl on tu mets plus par exemple
tu mets tout sur la ligne du listen il me semble, genre listen 443 http2 ssl;
mais moi jte propose de faire la chose suivante:
- tu fais ton bordel avec let's encrypt pour qu'il nous ponde le certificat
- après osef de la config qu'il nous génère, on prend notre config et on injecte juste son certificat
et ça ça doit marcher
ya juste un truc qu'il faudrait encore intégrer au jps
ça peut être fait n'importe quand mais avant de restart nginx:
faut lancer cette commande:
openssl dhparam -out /etc/nginx/dhparam.pem 4096
le chemin peut être changé mais après faut changer le ssl.conf, on a cette ligne: ssl_dhparam /etc/nginx/dhparam.pem;
ça peut prendre 2-3 minutes pour exécuter la commande
from ci.
@shikamu (note to self), look at jetty/jetty.project#4247 there seems to be information about the samesite cookie thing. The server that we are running jenkins on is jetty server.
from ci.
Related Issues (20)
- No user account for Softozor users are created by default
- The test environments are not closed to the outside world HOT 2
- Pull Requests trigger builds on the dev branch instead of the PR branch HOT 1
- The common repo of the e2e frontend tests are not cloned correctly HOT 2
- The wrong organization is provided in the ghprb configuration HOT 1
- Test databases need be named differently HOT 2
- Jobs configurations for dev and master branches are missing for all repos
- Add Jenkins pipeline to generate spec HOT 5
- Add job to create production backend docker image HOT 2
- Add job to create production consumer frontend docker image
- Add job to create production management frontend docker image
- Docker cannot access the ubuntu archive repositories during build HOT 2
- La Budzonnerie needs to be distinguished from Shopozor in terms of deployment HOT 1
- A job to clean up all the e2e environments would be appreciated HOT 1
- The Jenkins environment's used disk space increases too much
- Evalute reportportal
- Organize rapid switching to Infomaniak in case of problems on Hidora's platform
- Organize automatic update of hasura client
- Use of import file in zip format in reportportal.io HOT 3
Recommend Projects
-
React
A declarative, efficient, and flexible JavaScript library for building user interfaces.
-
Vue.js
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
-
Typescript
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
-
TensorFlow
An Open Source Machine Learning Framework for Everyone
-
Django
The Web framework for perfectionists with deadlines.
-
Laravel
A PHP framework for web artisans
-
D3
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
-
Recommend Topics
-
javascript
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
-
web
Some thing interesting about web. New door for the world.
-
server
A server is a program made to process requests and deliver data to clients.
-
Machine learning
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
-
Visualization
Some thing interesting about visualization, use data art
-
Game
Some thing interesting about game, make everyone happy.
Recommend Org
-
Facebook
We are working to build community through open source technology. NB: members must have two-factor auth.
-
Microsoft
Open source projects and samples from Microsoft.
-
Google
Google ❤️ Open Source for everyone.
-
Alibaba
Alibaba Open Source for everyone
-
D3
Data-Driven Documents codes.
-
Tencent
China tencent open source team.
from ci.