Search Options

Display Count
Sort
Preferred Language
Advanced Search

Results 1 - 10 of 64 for TLS (0.08 seconds)

  1. docs/sts/tls.md

    Also, note that the certificate has to contain the `Extended Key Usage: TLS Web Client Authentication`. Otherwise, MinIO would not accept the certificate as client certificate.
    
    Now, the STS certificate-based authentication happens in 4 steps:
    
    - Client sends HTTP `POST` request over a TLS connection hitting the MinIO TLS STS API.
    - MinIO verifies that the client certificate is valid.
    Created: Sun Dec 28 19:28:13 GMT 2025
    - Last Modified: Tue Aug 12 18:20:36 GMT 2025
    - 6K bytes
    - Click Count (1)
  2. internal/crypto/crypto.go

    	return []uint16{
    		tls.TLS_CHACHA20_POLY1305_SHA256, // TLS 1.3
    		tls.TLS_AES_128_GCM_SHA256,
    		tls.TLS_AES_256_GCM_SHA384,
    		tls.TLS_ECDHE_RSA_WITH_CHACHA20_POLY1305_SHA256, // TLS 1.2 ECDHE GCM / POLY1305
    		tls.TLS_ECDHE_ECDSA_WITH_CHACHA20_POLY1305_SHA256,
    		tls.TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256,
    		tls.TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256,
    		tls.TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384,
    Created: Sun Dec 28 19:28:13 GMT 2025
    - Last Modified: Sat Jul 19 06:23:15 GMT 2025
    - 2.8K bytes
    - Click Count (0)
  3. cmd/ftp-server.go

    		}
    	}
    
    	// If no TLS certs were provided, server is running in TLS for S3 API
    	// we automatically make FTP also run under TLS mode.
    	if globalIsTLS && tlsPrivateKey == "" && tlsPublicCert == "" {
    		tlsPrivateKey = getPrivateKeyFile()
    		tlsPublicCert = getPublicCertFile()
    	}
    
    	tls := tlsPrivateKey != "" && tlsPublicCert != ""
    
    	if forceTLS && !tls {
    Created: Sun Dec 28 19:28:13 GMT 2025
    - Last Modified: Fri Aug 29 02:39:48 GMT 2025
    - 5.2K bytes
    - Click Count (0)
  4. internal/config/certs.go

    package config
    
    import (
    	"bytes"
    	"crypto/tls"
    	"crypto/x509"
    	"encoding/pem"
    	"errors"
    	"os"
    
    	"github.com/minio/pkg/v3/env"
    )
    
    // EnvCertPassword is the environment variable which contains the password used
    // to decrypt the TLS private key. It must be set if the TLS private key is
    // password protected.
    const EnvCertPassword = "MINIO_CERT_PASSWD"
    
    Created: Sun Dec 28 19:28:13 GMT 2025
    - Last Modified: Wed Aug 14 17:11:51 GMT 2024
    - 3.8K bytes
    - Click Count (0)
  5. helm/minio/templates/servicemonitor.yaml

      {{- end }}
    spec:
      endpoints:
        {{- if .Values.tls.enabled }}
        - port: https
          scheme: https
          tlsConfig:
            ca:
              secret:
                name: {{ .Values.tls.certSecret }}
                key: {{ .Values.tls.publicCrt }}
            serverName: {{ template "minio.fullname" . }}
        {{- else }}
        - port: http
          scheme: http
    Created: Sun Dec 28 19:28:13 GMT 2025
    - Last Modified: Mon Apr 17 06:04:15 GMT 2023
    - 3.8K bytes
    - Click Count (0)
  6. helm/minio/templates/_helpers.tpl

    {{- end }}
    {{- end -}}
    
    {{/*
    Formats volume for MinIO TLS keys and trusted certs
    */}}
    {{- define "minio.tlsKeysVolume" -}}
    {{- if .Values.tls.enabled }}
    - name: cert-secret-volume
      secret:
        secretName: {{ tpl .Values.tls.certSecret $ }}
        items:
        - key: {{ .Values.tls.publicCrt }}
          path: public.crt
        - key: {{ .Values.tls.privateKey }}
          path: private.key
    {{- end }}
    Created: Sun Dec 28 19:28:13 GMT 2025
    - Last Modified: Wed Aug 06 23:48:24 GMT 2025
    - 6.4K bytes
    - Click Count (0)
  7. internal/config/etcd/etcd.go

    	cfg.PathPrefix = env.Get(EnvEtcdPathPrefix, kvs.Get(PathPrefix))
    	if etcdSecure {
    		cfg.TLS = &tls.Config{
    			RootCAs:                  rootCAs,
    			PreferServerCipherSuites: true,
    			MinVersion:               tls.VersionTLS12,
    			NextProtos:               []string{"http/1.1", "h2"},
    			ClientSessionCache:       tls.NewLRUClientSessionCache(64),
    			CipherSuites:             crypto.TLSCiphersBackwardCompatible(),
    Created: Sun Dec 28 19:28:13 GMT 2025
    - Last Modified: Fri May 16 14:27:42 GMT 2025
    - 5.2K bytes
    - Click Count (0)
  8. docs/tls/kubernetes/README.md

    This document explains how to configure MinIO server with TLS certificates on Kubernetes.
    
    ## 1. Prerequisites
    
    - Familiarity with [MinIO deployment process on Kubernetes](https://docs.min.io/community/minio-object-store/operations/deployments/kubernetes.html).
    
    - Kubernetes cluster with `kubectl` configured.
    
    Created: Sun Dec 28 19:28:13 GMT 2025
    - Last Modified: Tue Aug 12 18:20:36 GMT 2025
    - 3K bytes
    - Click Count (0)
  9. docs/ftp/README.md

    ```
    --sftp="address=:3022"
    ```
    
    ### TLS (FTP)
    
    Unlike SFTP server, FTP server is insecure by default. To operate under TLS mode, you need to provide certificates via
    
    ```
    --ftp="tls-private-key=path/to/private.key" --ftp="tls-public-cert=path/to/public.crt"
    ```
    
    > NOTE: if MinIO distributed setup is already configured to run under TLS, FTP will automatically use the relevant
    Created: Sun Dec 28 19:28:13 GMT 2025
    - Last Modified: Tue May 07 06:41:25 GMT 2024
    - 7.8K bytes
    - Click Count (0)
  10. api/go1.15.txt

    pkg crypto/tls, method (*Dialer) Dial(string, string) (net.Conn, error)
    pkg crypto/tls, method (*Dialer) DialContext(context.Context, string, string) (net.Conn, error)
    pkg crypto/tls, method (ClientAuthType) String() string
    pkg crypto/tls, method (CurveID) String() string
    pkg crypto/tls, method (SignatureScheme) String() string
    pkg crypto/tls, type Config struct, VerifyConnection func(ConnectionState) error
    Created: Tue Dec 30 11:13:12 GMT 2025
    - Last Modified: Fri Jul 17 02:15:01 GMT 2020
    - 7.6K bytes
    - Click Count (0)
Back to Top