Replies: 2 comments
|
I run 3 management nodes, but I use haproxy to offload SSL, while load-balancing https traffic to keep things simple on the cloudstack end. With the upcoming SSL certificate renewal changes, this might be the safest and cleanest option going forward. |
|
CloudStack's embedded Jetty can terminate HTTPS directly, so HAProxy is optional. The first thing I would verify is that the settings are in the active file, /etc/cloudstack/management/server.properties, without a second conflicting entry: A few checks are important:
The official configuration uses these same server.properties keys and requires the keystore to exist and be readable by the management server: https://docs.cloudstack.apache.org/en/4.20.1.0/installguide/optional_installation.html If it still starts only on HTTP, please paste the startup line containing http.enable/https.enable and the output of keytool -list with passwords and private details redacted. |
Uh oh!
There was an error while loading. Please reload this page.
I'm running CloudStack 4.22.0.0. I'm trying to enable https for management server UI. I have done following steps:
However, after restarting management server, UI is only accessible via http.
I've already looked into management server log and no https or keystore related error is found.
Any idea?
All reactions