Separate TLS config
- Dominant language
- Go
- Stars
- 24
- Forks
- 13
- PR merge metrics
- No merged PRs in 30d
Description
### Motivaction
Currently, we just have one TLS config, which is used for Raft and HTTP/GRPC servers, it is unsafe. When a client uses this TLS config, it can access the Raft and HTTP/GRPC servers, we cannot allow the client to access the Raft server, it is dangerous, so we need to split two TLS configs for HTTP/GPRC servers and Raft servers.
### Improvement Way
Support setting the TLS for HTTP/GPRC and Raft servers respectively.
- HTTP/GRPC server TLS config, it is used to client-to-server communication, so like:
```
--endpoint-ca-file
--endpoint-cert-file
--endpoint-key-file
```
- Raft server TLS config, it is used to server-to-server communication, so like:
```
--peer-ca-file
--peer-cert-file
--peer-key-file
```
Contributor guide
No contributing guide indexed for this repository
Assessment
This issue has not been assessed yet.