mirror of
https://github.com/google/nomulus.git
synced 2025-06-16 01:14:46 +02:00
The server certificates and corresponding keys are encrypted by KMS and stored on GCS. This allows us to easily replace expiring certs without having to roll out a new proxy release. However currently the certificate is obtained as a singleton and used in all connections served by a proxy instance. This means that if we were to upload a new cert, all existing instances will not use it. This CL makes it so that we only cache the certificate for 30 min, after which a new cert is fetched and decrypted. Local certificates used for testing are still singletons. ------------- Created by MOE: https://github.com/google/moe MOE_MIGRATED_REVID=206976318 |
||
---|---|---|
.. | ||
BackendMetricsHandler.java | ||
EppServiceHandler.java | ||
HealthCheckHandler.java | ||
HttpsRelayServiceHandler.java | ||
ProxyProtocolHandler.java | ||
QuotaHandler.java | ||
RelayHandler.java | ||
SslClientInitializer.java | ||
SslServerInitializer.java | ||
WebWhoisRedirectHandler.java | ||
WhoisServiceHandler.java |