Adding TLS to node exporter - cleaner version (#1277)
Add support for https connections. Signed-off-by: ksherryBAE <kieran.sherry@baesystems.com> Signed-off-by: James Ritchie <james.g.ritchie@baesystems.com> Signed-off-by: Simon Pasquier <spasquie@redhat.com> Signed-off-by: Ben RIdley <benridley29@gmail.com>
This commit is contained in:
parent
20fe5bfb5b
commit
aede04172c
52 changed files with 11430 additions and 2 deletions
24
https/README.md
Normal file
24
https/README.md
Normal file
|
|
@ -0,0 +1,24 @@
|
|||
# HTTPS Package for Prometheus
|
||||
|
||||
The `https` directory contains a Go package and a sample configuration file for running `node_exporter` with HTTPS instead of HTTP.
|
||||
When running a server with TLS use the flag `--web.config`
|
||||
|
||||
e.g. `./node_exporter --web.config="web-config.yml"`
|
||||
If the config is kept within the https directory.
|
||||
|
||||
The config file should be written in YAML format, and is reloaded on each connection to check for new certificates and/or authentication policy.
|
||||
|
||||
##Sample Config:
|
||||
```
|
||||
tlsConfig :
|
||||
# Certificate and key files for server to use to authenticate to client
|
||||
tlsCertPath : <filename>
|
||||
tlsKeyPath : <filename>
|
||||
|
||||
# Server policy for client authentication. Maps to ClientAuth Policies
|
||||
# For more detail on clientAuth options: [ClientAuthType](https://golang.org/pkg/crypto/tls/#ClientAuthType)
|
||||
[ clientAuth : <string> | default = "NoClientCert" ]
|
||||
|
||||
# CA certificate for client certificate authentication to the server
|
||||
[ clientCAs : <filename> ]
|
||||
```
|
||||
Loading…
Add table
Add a link
Reference in a new issue