Re: [OpenStack-Infra] Groups portal SSL certificates

2014-11-19 Thread Jeremy Stanley
On 2014-11-19 11:29:36 -0600 (-0600), Jimmy Mcarthur wrote: [...] As a result, our original proposal was to use OpenID Connect since it hadOAuth baked in. Since that was a no go from the Gerrit side, we ultimately pursued OpenID + OAuth2 so we could have similar functionality, even if the lift

[OpenStack-Infra] Groups portal SSL certificates

2014-11-18 Thread Marton Kiss
Hi All, I want to replace the groups portal authentication mechanism from openid to oauth2, because the actual openid implementation not supports retrieval of profile picture urls. The side-effect of the migration that OpenStackID enforce using SSL for oauth2 communication. So we need to issue an

Re: [OpenStack-Infra] Groups portal SSL certificates

2014-11-18 Thread Jeremy Stanley
On 2014-11-18 16:22:13 +0100 (+0100), Marton Kiss wrote: [...] we need to issue an x509 ssl cert for groups.openstack.org and groups-dev.openstack.org domains [...] As discussed in IRC, I'll go ahead and order the signed certificate for groups.openstack.org, but groups-dev should be configured