Mutual TLS Nedir?


$ openssl genrsa -des3 -out ca.key 4096$ openssl req -new -x509 -days 3650 -key ca.key -out ca.crt
$ openssl genrsa -des3 -out mysite.key 4096$ openssl genrsa -des3 -out 4096  262  openssl req -new -key -out  264  $ openssl x509 -req -days 365 -in user.csr -CA ca.crt -CAkey ca.key -set_serial 01 -out user.crt
server {  
listen 443;
ssl on;
proxy_ssl_server_name on;
ssl_certificate /etc/nginx/certs/;
ssl_certificate_key /etc/nginx/certs/;
curl --cacert ca.crt 
ssl_client_certificate /etc/nginx/certs/ca.crt;
ssl_verify_client on;
$ curl --cacert ca.crt$ <html>... 400 No required SSL certificate was sent ...</html>
curl --cacert ca.crt --key user.key --cert user.crt

Peki ya envoy, istio…. ?

Istio Genel Dizayn

Son olarak,






Emir Özbir

Emir Özbir


