Skip to content

Add route /internal/apps/.*/ssh_access/.* to mTLS endpoint - #701

Merged
jochenehret merged 2 commits into
developfrom
mtls_for_ssh_access
Oct 7, 2026
Merged

jochenehret merged 2 commits into
developfrom
mtls_for_ssh_access

Conversation

@jochenehret

@jochenehret jochenehret commented Oct 5, 2026 •

Copy link
Copy Markdown
Contributor

Thanks for contributing to the capi_release. To speed up the process of reviewing your pull request please provide us with:

  • A short explanation of the proposed change:
    Add the route /internal/apps/.*/ssh_access/.* to the mTLS endpoint (default port 9023), so that the "ssh-proxy" job can use a secure connection.

  • An explanation of the use cases your change solves
    Currently the "ssh-proxy" job connects via plain http (default port 9022) which is considered unsafe.

  • Links to any other associated PRs
    Enable mTLS configuration for ssh_proxy job diego-release#1215
    Enable mTLS configuration for ssh_proxy job cf-deployment#1381

  • I have viewed signed and have submitted the Contributor License Agreement

  • I have made this pull request to the develop branch

  • I have run CF Acceptance Tests on bosh lite

@jochenehret
jochenehret merged commit cb06385 into develop Oct 7, 2026
2 checks passed
@moleske
moleske deleted the mtls_for_ssh_access branch October 7, 2026 16:07
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants