)]}'
{"/PATCHSET_LEVEL":[{"author":{"_account_id":36938,"name":"Kyaw Myo Thant","display_name":"Kyaw Myo Thant","email":"kyawmyothant@ntt-at.co.jp","username":"AT-Kyawmyothant"},"change_message_id":"c1f9c11fc887a6bac5e20f22cdbf7941c73b3bf7","unresolved":false,"context_lines":[],"source_content_type":"","patch_set":2,"id":"a6f1102f_f56a78b1","updated":"2024-08-02 04:59:56.000000000","message":"Please, kindly check the changes.","commit_id":"26d9b6e1bca20734ae3f3eab59b10558dc0481a8"},{"author":{"_account_id":31668,"deleted":true},"change_message_id":"870f120d767c88c9c4d2de7b5d943e8befcdb625","unresolved":false,"context_lines":[],"source_content_type":"","patch_set":5,"id":"0a01e47e_0118c249","updated":"2024-08-07 01:55:01.000000000","message":"LGTM","commit_id":"78474d00f06ae0d9e3ccc8c4b9cdaec8afc29ab7"},{"author":{"_account_id":31857,"name":"Ayumu Ueha","email":"ueha.ayumu@fujitsu.com","username":"ueha"},"change_message_id":"0d145442f21df0a72e2c09e8171547f550d027d1","unresolved":false,"context_lines":[],"source_content_type":"","patch_set":5,"id":"5911f894_13135df5","updated":"2024-08-26 09:15:20.000000000","message":"LGTM.","commit_id":"78474d00f06ae0d9e3ccc8c4b9cdaec8afc29ab7"},{"author":{"_account_id":36938,"name":"Kyaw Myo Thant","display_name":"Kyaw Myo Thant","email":"kyawmyothant@ntt-at.co.jp","username":"AT-Kyawmyothant"},"change_message_id":"4bdfa8a85a56f0f1db430f0809f1ae95983397e1","unresolved":true,"context_lines":[],"source_content_type":"","patch_set":5,"id":"24824d01_97ed6adc","updated":"2024-08-30 06:19:35.000000000","message":"Should check and fix for same case.\n\u003chttps://review.opendev.org/c/openstack/tacker/+/925435/comment/49e3659e_bbb1fdac/\u003e","commit_id":"78474d00f06ae0d9e3ccc8c4b9cdaec8afc29ab7"},{"author":{"_account_id":36938,"name":"Kyaw Myo Thant","display_name":"Kyaw Myo Thant","email":"kyawmyothant@ntt-at.co.jp","username":"AT-Kyawmyothant"},"change_message_id":"bf58d0d8b3284c215c2ff134a97fd8001400cb97","unresolved":false,"context_lines":[],"source_content_type":"","patch_set":5,"id":"8d270c98_3758518c","in_reply_to":"24824d01_97ed6adc","updated":"2024-09-02 05:49:19.000000000","message":"Done","commit_id":"78474d00f06ae0d9e3ccc8c4b9cdaec8afc29ab7"},{"author":{"_account_id":33455,"name":"Hiromu Asahina","email":"hiromu.a5a@gmail.com","username":"h_asahina"},"change_message_id":"776ecc463cd6117b10d17871fd1e0575a7e3ad7d","unresolved":false,"context_lines":[],"source_content_type":"","patch_set":8,"id":"dbdd70a0_c50317c9","updated":"2024-09-10 02:09:51.000000000","message":"Thank you. Please check one minor comment. The other parts are lgtm.","commit_id":"e3302260f06e4152d004427adb27146fa5f8b6e4"}],"doc/source/admin/oauth2_mtls_usage_guide.rst":[{"author":{"_account_id":31668,"deleted":true},"change_message_id":"0587665a5d4bd8c9b7185fb1cd89474fd1003262","unresolved":true,"context_lines":[{"line_number":12,"context_line":""},{"line_number":13,"context_line":"Guide"},{"line_number":14,"context_line":"~~~~~"},{"line_number":15,"context_line":"You can enable Tacker server to support mTLS Client Authentication by the"},{"line_number":16,"context_line":"following steps in this guide. In this example, ``tacker.host`` is the domain"},{"line_number":17,"context_line":"name used by the Tacker server."},{"line_number":18,"context_line":""}],"source_content_type":"text/x-rst","patch_set":1,"id":"814c55e0_3b1ce6b6","line":15,"updated":"2024-08-01 07:15:51.000000000","message":"How about adding a blank line to match the others?","commit_id":"86df01a4bfb381222781ad0fd783fb95f0875b4c"},{"author":{"_account_id":36938,"name":"Kyaw Myo Thant","display_name":"Kyaw Myo Thant","email":"kyawmyothant@ntt-at.co.jp","username":"AT-Kyawmyothant"},"change_message_id":"c1f9c11fc887a6bac5e20f22cdbf7941c73b3bf7","unresolved":true,"context_lines":[{"line_number":12,"context_line":""},{"line_number":13,"context_line":"Guide"},{"line_number":14,"context_line":"~~~~~"},{"line_number":15,"context_line":"You can enable Tacker server to support mTLS Client Authentication by the"},{"line_number":16,"context_line":"following steps in this guide. In this example, ``tacker.host`` is the domain"},{"line_number":17,"context_line":"name used by the Tacker server."},{"line_number":18,"context_line":""}],"source_content_type":"text/x-rst","patch_set":1,"id":"f7534ecb_5334e306","line":15,"in_reply_to":"814c55e0_3b1ce6b6","updated":"2024-08-02 04:59:56.000000000","message":"I added a blank line.","commit_id":"86df01a4bfb381222781ad0fd783fb95f0875b4c"},{"author":{"_account_id":31668,"deleted":true},"change_message_id":"9207e64151230eb98157c884176f03c8c8411db6","unresolved":false,"context_lines":[{"line_number":12,"context_line":""},{"line_number":13,"context_line":"Guide"},{"line_number":14,"context_line":"~~~~~"},{"line_number":15,"context_line":"You can enable Tacker server to support mTLS Client Authentication by the"},{"line_number":16,"context_line":"following steps in this guide. In this example, ``tacker.host`` is the domain"},{"line_number":17,"context_line":"name used by the Tacker server."},{"line_number":18,"context_line":""}],"source_content_type":"text/x-rst","patch_set":1,"id":"0d4ab55f_fc802698","line":15,"in_reply_to":"f7534ecb_5334e306","updated":"2024-08-02 06:54:44.000000000","message":"Acknowledged","commit_id":"86df01a4bfb381222781ad0fd783fb95f0875b4c"},{"author":{"_account_id":31668,"deleted":true},"change_message_id":"0587665a5d4bd8c9b7185fb1cd89474fd1003262","unresolved":true,"context_lines":[{"line_number":53,"context_line":"     Organizational Unit Name (eg, section) []:CertDept"},{"line_number":54,"context_line":"     Common Name (e.g. server FQDN or YOUR name) []:root_a.openstack.host"},{"line_number":55,"context_line":"     Email Address []:root_a@issuing.org"},{"line_number":56,"context_line":""},{"line_number":57,"context_line":""},{"line_number":58,"context_line":"3. If you need to support multiple root certificates, those root certificates"},{"line_number":59,"context_line":"   should be merged and configured on the server. For example, this guide uses"}],"source_content_type":"text/x-rst","patch_set":1,"id":"be53720d_8b67849b","line":56,"updated":"2024-08-01 07:15:51.000000000","message":"Didn\u0027t the following be output?\n```\nPlease enter the following \u0027extra\u0027 attributes\nto be sent with your certificate request\nA challenge password []:\nAn optional company name []:\n```","commit_id":"86df01a4bfb381222781ad0fd783fb95f0875b4c"},{"author":{"_account_id":36938,"name":"Kyaw Myo Thant","display_name":"Kyaw Myo Thant","email":"kyawmyothant@ntt-at.co.jp","username":"AT-Kyawmyothant"},"change_message_id":"c1f9c11fc887a6bac5e20f22cdbf7941c73b3bf7","unresolved":true,"context_lines":[{"line_number":53,"context_line":"     Organizational Unit Name (eg, section) []:CertDept"},{"line_number":54,"context_line":"     Common Name (e.g. server FQDN or YOUR name) []:root_a.openstack.host"},{"line_number":55,"context_line":"     Email Address []:root_a@issuing.org"},{"line_number":56,"context_line":""},{"line_number":57,"context_line":""},{"line_number":58,"context_line":"3. If you need to support multiple root certificates, those root certificates"},{"line_number":59,"context_line":"   should be merged and configured on the server. For example, this guide uses"}],"source_content_type":"text/x-rst","patch_set":1,"id":"fa7ed87b_ecbc1a9d","line":56,"in_reply_to":"be53720d_8b67849b","updated":"2024-08-02 04:59:56.000000000","message":"Yes, there was no such output.","commit_id":"86df01a4bfb381222781ad0fd783fb95f0875b4c"},{"author":{"_account_id":31668,"deleted":true},"change_message_id":"9207e64151230eb98157c884176f03c8c8411db6","unresolved":false,"context_lines":[{"line_number":53,"context_line":"     Organizational Unit Name (eg, section) []:CertDept"},{"line_number":54,"context_line":"     Common Name (e.g. server FQDN or YOUR name) []:root_a.openstack.host"},{"line_number":55,"context_line":"     Email Address []:root_a@issuing.org"},{"line_number":56,"context_line":""},{"line_number":57,"context_line":""},{"line_number":58,"context_line":"3. If you need to support multiple root certificates, those root certificates"},{"line_number":59,"context_line":"   should be merged and configured on the server. For example, this guide uses"}],"source_content_type":"text/x-rst","patch_set":1,"id":"44f6a1d7_eb3ab407","line":56,"in_reply_to":"fa7ed87b_ecbc1a9d","updated":"2024-08-02 06:54:44.000000000","message":"Acknowledged","commit_id":"86df01a4bfb381222781ad0fd783fb95f0875b4c"},{"author":{"_account_id":31668,"deleted":true},"change_message_id":"0587665a5d4bd8c9b7185fb1cd89474fd1003262","unresolved":true,"context_lines":[{"line_number":161,"context_line":"      -----END RSA PRIVATE KEY-----"},{"line_number":162,"context_line":""},{"line_number":163,"context_line":""},{"line_number":164,"context_line":"Enable Tacker to support mTLS for access to Notification server"},{"line_number":165,"context_line":"---------------------------------------------------------------"},{"line_number":166,"context_line":""},{"line_number":167,"context_line":"The following parts describe steps to enable mTLS only for access to"}],"source_content_type":"text/x-rst","patch_set":1,"id":"d2fa26ff_efa36cb8","line":164,"updated":"2024-08-01 07:15:51.000000000","message":"How about changing it to the following so that it is clear that the External Monitoring Tool server is also included?\n* Access to Notification server and External Monitoring Tool server","commit_id":"86df01a4bfb381222781ad0fd783fb95f0875b4c"},{"author":{"_account_id":31668,"deleted":true},"change_message_id":"9207e64151230eb98157c884176f03c8c8411db6","unresolved":true,"context_lines":[{"line_number":161,"context_line":"      -----END RSA PRIVATE KEY-----"},{"line_number":162,"context_line":""},{"line_number":163,"context_line":""},{"line_number":164,"context_line":"Enable Tacker to support mTLS for access to Notification server"},{"line_number":165,"context_line":"---------------------------------------------------------------"},{"line_number":166,"context_line":""},{"line_number":167,"context_line":"The following parts describe steps to enable mTLS only for access to"}],"source_content_type":"text/x-rst","patch_set":1,"id":"9874f378_40a97de0","line":164,"in_reply_to":"0081d4ab_89cede5a","updated":"2024-08-02 06:54:44.000000000","message":"Are the L.10-L.11 fixes unnecessary?","commit_id":"86df01a4bfb381222781ad0fd783fb95f0875b4c"},{"author":{"_account_id":36938,"name":"Kyaw Myo Thant","display_name":"Kyaw Myo Thant","email":"kyawmyothant@ntt-at.co.jp","username":"AT-Kyawmyothant"},"change_message_id":"35c48e673c8fbd532aa8f8d8b26249757c525ec1","unresolved":true,"context_lines":[{"line_number":161,"context_line":"      -----END RSA PRIVATE KEY-----"},{"line_number":162,"context_line":""},{"line_number":163,"context_line":""},{"line_number":164,"context_line":"Enable Tacker to support mTLS for access to Notification server"},{"line_number":165,"context_line":"---------------------------------------------------------------"},{"line_number":166,"context_line":""},{"line_number":167,"context_line":"The following parts describe steps to enable mTLS only for access to"}],"source_content_type":"text/x-rst","patch_set":1,"id":"e661cb5f_1689697e","line":164,"in_reply_to":"2eb7ee57_9c35d8c1","updated":"2024-08-05 04:56:04.000000000","message":"I think that would be nice to unify the terms,too. \nI also made some other change that I noticed related to your comment.\nPlease, kindly check the changes.","commit_id":"86df01a4bfb381222781ad0fd783fb95f0875b4c"},{"author":{"_account_id":36938,"name":"Kyaw Myo Thant","display_name":"Kyaw Myo Thant","email":"kyawmyothant@ntt-at.co.jp","username":"AT-Kyawmyothant"},"change_message_id":"dda279d5b831ae61061f79648c9dadf1964fa817","unresolved":true,"context_lines":[{"line_number":161,"context_line":"      -----END RSA PRIVATE KEY-----"},{"line_number":162,"context_line":""},{"line_number":163,"context_line":""},{"line_number":164,"context_line":"Enable Tacker to support mTLS for access to Notification server"},{"line_number":165,"context_line":"---------------------------------------------------------------"},{"line_number":166,"context_line":""},{"line_number":167,"context_line":"The following parts describe steps to enable mTLS only for access to"}],"source_content_type":"text/x-rst","patch_set":1,"id":"e39bc53c_2ac65530","line":164,"in_reply_to":"9874f378_40a97de0","updated":"2024-08-05 00:11:05.000000000","message":"Thanks for pointing out. I fixed the sentence by removing the \"External Monitoring Tool server\".","commit_id":"86df01a4bfb381222781ad0fd783fb95f0875b4c"},{"author":{"_account_id":36938,"name":"Kyaw Myo Thant","display_name":"Kyaw Myo Thant","email":"kyawmyothant@ntt-at.co.jp","username":"AT-Kyawmyothant"},"change_message_id":"c1f9c11fc887a6bac5e20f22cdbf7941c73b3bf7","unresolved":true,"context_lines":[{"line_number":161,"context_line":"      -----END RSA PRIVATE KEY-----"},{"line_number":162,"context_line":""},{"line_number":163,"context_line":""},{"line_number":164,"context_line":"Enable Tacker to support mTLS for access to Notification server"},{"line_number":165,"context_line":"---------------------------------------------------------------"},{"line_number":166,"context_line":""},{"line_number":167,"context_line":"The following parts describe steps to enable mTLS only for access to"}],"source_content_type":"text/x-rst","patch_set":1,"id":"0081d4ab_89cede5a","line":164,"in_reply_to":"d2fa26ff_efa36cb8","updated":"2024-08-02 04:59:56.000000000","message":"I was also thinking about how to edit about this title and paragraph.\nThis configuration is to use the mtls connection when tacker send out the notification to Notification server. And, External Monitoring Tool server here is also mentioned as a type of Notification server.\nSo, to avoid the confusion for the reader, I\u0027ll rather remove \"External Monitoring Tool server\" from the paragraph than adding to title. \n\nAnd, The title you suggested can be read the paragraph is about accessing to the Notification server, But the paragraph is about how to enable the mtls support. \nSo, I will rewrite the title as follow for more readablity.\n- `Enable mTLS for access to Notification server`","commit_id":"86df01a4bfb381222781ad0fd783fb95f0875b4c"},{"author":{"_account_id":31668,"deleted":true},"change_message_id":"8eed98295e7d9f0b28b472b8faf5156e0aabdb39","unresolved":true,"context_lines":[{"line_number":161,"context_line":"      -----END RSA PRIVATE KEY-----"},{"line_number":162,"context_line":""},{"line_number":163,"context_line":""},{"line_number":164,"context_line":"Enable Tacker to support mTLS for access to Notification server"},{"line_number":165,"context_line":"---------------------------------------------------------------"},{"line_number":166,"context_line":""},{"line_number":167,"context_line":"The following parts describe steps to enable mTLS only for access to"}],"source_content_type":"text/x-rst","patch_set":1,"id":"2eb7ee57_9c35d8c1","line":164,"in_reply_to":"e39bc53c_2ac65530","updated":"2024-08-05 00:32:22.000000000","message":"Thank you for the fix.\n\nIs there any point in writing the following differently?\n* L.16:  the LCM Notification server\n* L.170,174: Notification server\n\nIf they mean the same thing, it would be better to unify the terms.","commit_id":"86df01a4bfb381222781ad0fd783fb95f0875b4c"},{"author":{"_account_id":31668,"deleted":true},"change_message_id":"40133fe2b3c557cb84f3b9afb6c1f3f42abe4187","unresolved":false,"context_lines":[{"line_number":161,"context_line":"      -----END RSA PRIVATE KEY-----"},{"line_number":162,"context_line":""},{"line_number":163,"context_line":""},{"line_number":164,"context_line":"Enable Tacker to support mTLS for access to Notification server"},{"line_number":165,"context_line":"---------------------------------------------------------------"},{"line_number":166,"context_line":""},{"line_number":167,"context_line":"The following parts describe steps to enable mTLS only for access to"}],"source_content_type":"text/x-rst","patch_set":1,"id":"3536edc3_fa1c9e4b","line":164,"in_reply_to":"e661cb5f_1689697e","updated":"2024-08-05 08:31:44.000000000","message":"Acknowledged","commit_id":"86df01a4bfb381222781ad0fd783fb95f0875b4c"},{"author":{"_account_id":31668,"deleted":true},"change_message_id":"0587665a5d4bd8c9b7185fb1cd89474fd1003262","unresolved":true,"context_lines":[{"line_number":189,"context_line":"      $ sudo systemctl restart devstack@tacker"},{"line_number":190,"context_line":""},{"line_number":191,"context_line":""},{"line_number":192,"context_line":"Enable Tacker to support mTLS for access to External NFVO server"},{"line_number":193,"context_line":"----------------------------------------------------------------"},{"line_number":194,"context_line":""},{"line_number":195,"context_line":"The following parts describe steps to enable mTLS only for access to"}],"source_content_type":"text/x-rst","patch_set":1,"id":"717bacb2_608581b2","line":192,"updated":"2024-08-01 07:15:51.000000000","message":"How about changing it to the following according to the change in L.146?\n* Access to External NFVO server","commit_id":"86df01a4bfb381222781ad0fd783fb95f0875b4c"},{"author":{"_account_id":36938,"name":"Kyaw Myo Thant","display_name":"Kyaw Myo Thant","email":"kyawmyothant@ntt-at.co.jp","username":"AT-Kyawmyothant"},"change_message_id":"c1f9c11fc887a6bac5e20f22cdbf7941c73b3bf7","unresolved":true,"context_lines":[{"line_number":189,"context_line":"      $ sudo systemctl restart devstack@tacker"},{"line_number":190,"context_line":""},{"line_number":191,"context_line":""},{"line_number":192,"context_line":"Enable Tacker to support mTLS for access to External NFVO server"},{"line_number":193,"context_line":"----------------------------------------------------------------"},{"line_number":194,"context_line":""},{"line_number":195,"context_line":"The following parts describe steps to enable mTLS only for access to"}],"source_content_type":"text/x-rst","patch_set":1,"id":"b21be227_44f8567f","line":192,"in_reply_to":"717bacb2_608581b2","updated":"2024-08-02 04:59:56.000000000","message":"Rewrote the title. Find details on comment at L.164.","commit_id":"86df01a4bfb381222781ad0fd783fb95f0875b4c"},{"author":{"_account_id":31668,"deleted":true},"change_message_id":"9207e64151230eb98157c884176f03c8c8411db6","unresolved":false,"context_lines":[{"line_number":189,"context_line":"      $ sudo systemctl restart devstack@tacker"},{"line_number":190,"context_line":""},{"line_number":191,"context_line":""},{"line_number":192,"context_line":"Enable Tacker to support mTLS for access to External NFVO server"},{"line_number":193,"context_line":"----------------------------------------------------------------"},{"line_number":194,"context_line":""},{"line_number":195,"context_line":"The following parts describe steps to enable mTLS only for access to"}],"source_content_type":"text/x-rst","patch_set":1,"id":"248ac8f8_dbb42db4","line":192,"in_reply_to":"b21be227_44f8567f","updated":"2024-08-02 06:54:44.000000000","message":"Acknowledged","commit_id":"86df01a4bfb381222781ad0fd783fb95f0875b4c"},{"author":{"_account_id":31668,"deleted":true},"change_message_id":"9207e64151230eb98157c884176f03c8c8411db6","unresolved":true,"context_lines":[{"line_number":9,"context_line":"implemented as an extension of Tacker. As an API client, Tacker can use a"},{"line_number":10,"context_line":"mTLS connection to access the LCM Notification server, External Monitoring"},{"line_number":11,"context_line":"tool server and External NFVO server."},{"line_number":12,"context_line":""},{"line_number":13,"context_line":"Guide"},{"line_number":14,"context_line":"~~~~~"},{"line_number":15,"context_line":""}],"source_content_type":"text/x-rst","patch_set":2,"id":"69d62ed2_f043b596","line":12,"updated":"2024-08-02 06:54:44.000000000","message":"Please add the version of Tacker you used to check to the note.","commit_id":"26d9b6e1bca20734ae3f3eab59b10558dc0481a8"},{"author":{"_account_id":36938,"name":"Kyaw Myo Thant","display_name":"Kyaw Myo Thant","email":"kyawmyothant@ntt-at.co.jp","username":"AT-Kyawmyothant"},"change_message_id":"dda279d5b831ae61061f79648c9dadf1964fa817","unresolved":true,"context_lines":[{"line_number":9,"context_line":"implemented as an extension of Tacker. As an API client, Tacker can use a"},{"line_number":10,"context_line":"mTLS connection to access the LCM Notification server, External Monitoring"},{"line_number":11,"context_line":"tool server and External NFVO server."},{"line_number":12,"context_line":""},{"line_number":13,"context_line":"Guide"},{"line_number":14,"context_line":"~~~~~"},{"line_number":15,"context_line":""}],"source_content_type":"text/x-rst","patch_set":2,"id":"eea546f1_30a8eefa","line":12,"in_reply_to":"69d62ed2_f043b596","updated":"2024-08-05 00:11:05.000000000","message":"I added the note with Tacker version used.","commit_id":"26d9b6e1bca20734ae3f3eab59b10558dc0481a8"},{"author":{"_account_id":31668,"deleted":true},"change_message_id":"8eed98295e7d9f0b28b472b8faf5156e0aabdb39","unresolved":false,"context_lines":[{"line_number":9,"context_line":"implemented as an extension of Tacker. As an API client, Tacker can use a"},{"line_number":10,"context_line":"mTLS connection to access the LCM Notification server, External Monitoring"},{"line_number":11,"context_line":"tool server and External NFVO server."},{"line_number":12,"context_line":""},{"line_number":13,"context_line":"Guide"},{"line_number":14,"context_line":"~~~~~"},{"line_number":15,"context_line":""}],"source_content_type":"text/x-rst","patch_set":2,"id":"4e559265_a883430d","line":12,"in_reply_to":"eea546f1_30a8eefa","updated":"2024-08-05 00:32:22.000000000","message":"Acknowledged","commit_id":"26d9b6e1bca20734ae3f3eab59b10558dc0481a8"},{"author":{"_account_id":36938,"name":"Kyaw Myo Thant","display_name":"Kyaw Myo Thant","email":"kyawmyothant@ntt-at.co.jp","username":"AT-Kyawmyothant"},"change_message_id":"c1f9c11fc887a6bac5e20f22cdbf7941c73b3bf7","unresolved":false,"context_lines":[{"line_number":169,"context_line":"Notification server."},{"line_number":170,"context_line":""},{"line_number":171,"context_line":"1. Modify the configuration file ``tacker.conf`` to enable SSL to implement"},{"line_number":172,"context_line":"   mTLS support. For the settings, specify the path where"},{"line_number":173,"context_line":"   the certificate file created in the previous chapter is stored. The"},{"line_number":174,"context_line":"   following settings are examples, and the certificate should be saved in a"},{"line_number":175,"context_line":"   directory with appropriate access permission."}],"source_content_type":"text/x-rst","patch_set":2,"id":"94730b06_d2f1aee4","line":172,"updated":"2024-08-02 04:59:56.000000000","message":"I changed this line because it is hard to understand and little off from topic.","commit_id":"26d9b6e1bca20734ae3f3eab59b10558dc0481a8"},{"author":{"_account_id":36938,"name":"Kyaw Myo Thant","display_name":"Kyaw Myo Thant","email":"kyawmyothant@ntt-at.co.jp","username":"AT-Kyawmyothant"},"change_message_id":"c1f9c11fc887a6bac5e20f22cdbf7941c73b3bf7","unresolved":false,"context_lines":[{"line_number":197,"context_line":"External NFVO server."},{"line_number":198,"context_line":""},{"line_number":199,"context_line":"1. Modify the configuration file ``tacker.conf`` to enable SSL to implement"},{"line_number":200,"context_line":"   mTLS support. The `client_id` and `client_password`"},{"line_number":201,"context_line":"   must be obtained from the authentication server used by the external NFVO."},{"line_number":202,"context_line":"   If you are using Keystone as the authentication server, you can use user_id"},{"line_number":203,"context_line":"   as the client_id for mTLS authentication."}],"source_content_type":"text/x-rst","patch_set":2,"id":"f0b0a5eb_2999675d","line":200,"updated":"2024-08-02 04:59:56.000000000","message":"I changed this line because it is hard to understand and little off from topic.","commit_id":"26d9b6e1bca20734ae3f3eab59b10558dc0481a8"},{"author":{"_account_id":31668,"deleted":true},"change_message_id":"40133fe2b3c557cb84f3b9afb6c1f3f42abe4187","unresolved":true,"context_lines":[{"line_number":233,"context_line":""},{"line_number":234,"context_line":"Access to External NFVO server and Notification server is not outputted to the"},{"line_number":235,"context_line":"Tacker log. Therefore, check the access log of the External NFVO server and"},{"line_number":236,"context_line":"Notification server when executing lcm operations, or use the packet capture"},{"line_number":237,"context_line":"software to confirm that the access to each server is the mTLS communication."},{"line_number":238,"context_line":"If the packet capture shows that the client and server are sending certificates"},{"line_number":239,"context_line":"to each other during the handshake, you can verify that mTLS is enabled."}],"source_content_type":"text/x-rst","patch_set":4,"id":"f3897462_debc4b5f","line":236,"updated":"2024-08-05 08:31:44.000000000","message":"nit: Notification server -\u003e the Notification server","commit_id":"b611ae7f426566a66e83b21d7a4377aa5ae6b1c3"},{"author":{"_account_id":31668,"deleted":true},"change_message_id":"870f120d767c88c9c4d2de7b5d943e8befcdb625","unresolved":false,"context_lines":[{"line_number":233,"context_line":""},{"line_number":234,"context_line":"Access to External NFVO server and Notification server is not outputted to the"},{"line_number":235,"context_line":"Tacker log. Therefore, check the access log of the External NFVO server and"},{"line_number":236,"context_line":"Notification server when executing lcm operations, or use the packet capture"},{"line_number":237,"context_line":"software to confirm that the access to each server is the mTLS communication."},{"line_number":238,"context_line":"If the packet capture shows that the client and server are sending certificates"},{"line_number":239,"context_line":"to each other during the handshake, you can verify that mTLS is enabled."}],"source_content_type":"text/x-rst","patch_set":4,"id":"75d4bf1f_789267f1","line":236,"in_reply_to":"6c0aaaa2_2f86aa77","updated":"2024-08-07 01:55:01.000000000","message":"Acknowledged","commit_id":"b611ae7f426566a66e83b21d7a4377aa5ae6b1c3"},{"author":{"_account_id":36938,"name":"Kyaw Myo Thant","display_name":"Kyaw Myo Thant","email":"kyawmyothant@ntt-at.co.jp","username":"AT-Kyawmyothant"},"change_message_id":"46a859adc256584b44db601615f02d4bb5205676","unresolved":true,"context_lines":[{"line_number":233,"context_line":""},{"line_number":234,"context_line":"Access to External NFVO server and Notification server is not outputted to the"},{"line_number":235,"context_line":"Tacker log. Therefore, check the access log of the External NFVO server and"},{"line_number":236,"context_line":"Notification server when executing lcm operations, or use the packet capture"},{"line_number":237,"context_line":"software to confirm that the access to each server is the mTLS communication."},{"line_number":238,"context_line":"If the packet capture shows that the client and server are sending certificates"},{"line_number":239,"context_line":"to each other during the handshake, you can verify that mTLS is enabled."}],"source_content_type":"text/x-rst","patch_set":4,"id":"6c0aaaa2_2f86aa77","line":236,"in_reply_to":"f3897462_debc4b5f","updated":"2024-08-06 05:36:50.000000000","message":"Thanks for pointing out.\nFixed.","commit_id":"b611ae7f426566a66e83b21d7a4377aa5ae6b1c3"},{"author":{"_account_id":33455,"name":"Hiromu Asahina","email":"hiromu.a5a@gmail.com","username":"h_asahina"},"change_message_id":"215c277eca07a2df6068375d20c0f3c074e42d76","unresolved":true,"context_lines":[{"line_number":1,"context_line":"\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d"},{"line_number":2,"context_line":"Using OAuth 2.0 mTLS for Tacker"},{"line_number":3,"context_line":"\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d"},{"line_number":4,"context_line":""},{"line_number":5,"context_line":".. note::"}],"source_content_type":"text/x-rst","patch_set":5,"id":"b753c6e9_1b01d70e","line":2,"updated":"2024-09-02 09:50:14.000000000","message":"Using OAuth2.0+mTLS for Tacker to Access Notification and External NFVO Servers\n\nOR\n\nUsing OAuth2.0+mTLS for Notification, Subscription and Grant\n\n(If we could confine the circumstances)\n\nOR\n\nConfiguring Tacker as mTLS OAuth2.0 Client\n\n\nThis document describes a case where Tacker acts as a client whereas [Using OAuth2.0 for Tacker](https://docs.openstack.org/tacker/latest/admin/oauth2_usage_guide.html), a similar document, describes a case where Tacker acts as both a server and a client. We need to differentiate them.\n\nWe can add a case where Tacker acts as a server to this page in the future and then  change the name properly.","commit_id":"78474d00f06ae0d9e3ccc8c4b9cdaec8afc29ab7"},{"author":{"_account_id":33455,"name":"Hiromu Asahina","email":"hiromu.a5a@gmail.com","username":"h_asahina"},"change_message_id":"776ecc463cd6117b10d17871fd1e0575a7e3ad7d","unresolved":false,"context_lines":[{"line_number":1,"context_line":"\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d"},{"line_number":2,"context_line":"Using OAuth 2.0 mTLS for Tacker"},{"line_number":3,"context_line":"\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d"},{"line_number":4,"context_line":""},{"line_number":5,"context_line":".. note::"}],"source_content_type":"text/x-rst","patch_set":5,"id":"b5abecbf_db44f49c","line":2,"in_reply_to":"8cdaf151_eb5b34e6","updated":"2024-09-10 02:09:51.000000000","message":"Done","commit_id":"78474d00f06ae0d9e3ccc8c4b9cdaec8afc29ab7"},{"author":{"_account_id":36938,"name":"Kyaw Myo Thant","display_name":"Kyaw Myo Thant","email":"kyawmyothant@ntt-at.co.jp","username":"AT-Kyawmyothant"},"change_message_id":"bb73558ec6c7eef18483812bbfd5586c38cbb3cd","unresolved":true,"context_lines":[{"line_number":1,"context_line":"\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d"},{"line_number":2,"context_line":"Using OAuth 2.0 mTLS for Tacker"},{"line_number":3,"context_line":"\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d\u003d"},{"line_number":4,"context_line":""},{"line_number":5,"context_line":".. note::"}],"source_content_type":"text/x-rst","patch_set":5,"id":"8cdaf151_eb5b34e6","line":2,"in_reply_to":"b753c6e9_1b01d70e","updated":"2024-09-09 07:33:14.000000000","message":"Thanks for the comment.\nI think \"Configuring Tacker as mTLS OAuth2.0 Client\" is suitable for this document, so I changed the title to that.\n\nAnd as you mentioned, we should add a case where Tacker acts as a server in future.","commit_id":"78474d00f06ae0d9e3ccc8c4b9cdaec8afc29ab7"},{"author":{"_account_id":33455,"name":"Hiromu Asahina","email":"hiromu.a5a@gmail.com","username":"h_asahina"},"change_message_id":"215c277eca07a2df6068375d20c0f3c074e42d76","unresolved":true,"context_lines":[{"line_number":11,"context_line":"Overview"},{"line_number":12,"context_line":"~~~~~~~~"},{"line_number":13,"context_line":""},{"line_number":14,"context_line":"OAuth 2.0 Mutual-TLS (mTLS) Client Authentication based on `RFC8705`_ is"},{"line_number":15,"context_line":"implemented as an extension of Tacker. As an API client, Tacker can use a"},{"line_number":16,"context_line":"mTLS connection to access the Notification server and the External NFVO server."},{"line_number":17,"context_line":""}],"source_content_type":"text/x-rst","patch_set":5,"id":"72d14a48_a038f967","line":14,"updated":"2024-09-02 09:50:14.000000000","message":"According to the RFC, `Mutual TLS for OAuth Client Authentication` can be a better term than `mTLS Client Authentication`\n\nlike \n\n```\n\nTacker implements Mutual TLS (mTLS) for OAuth 2.0 Client Authentication based on `RFC8705`.\n\n```","commit_id":"78474d00f06ae0d9e3ccc8c4b9cdaec8afc29ab7"},{"author":{"_account_id":33455,"name":"Hiromu Asahina","email":"hiromu.a5a@gmail.com","username":"h_asahina"},"change_message_id":"776ecc463cd6117b10d17871fd1e0575a7e3ad7d","unresolved":false,"context_lines":[{"line_number":11,"context_line":"Overview"},{"line_number":12,"context_line":"~~~~~~~~"},{"line_number":13,"context_line":""},{"line_number":14,"context_line":"OAuth 2.0 Mutual-TLS (mTLS) Client Authentication based on `RFC8705`_ is"},{"line_number":15,"context_line":"implemented as an extension of Tacker. As an API client, Tacker can use a"},{"line_number":16,"context_line":"mTLS connection to access the Notification server and the External NFVO server."},{"line_number":17,"context_line":""}],"source_content_type":"text/x-rst","patch_set":5,"id":"904e350f_d09f3812","line":14,"in_reply_to":"45e64dae_b5e4593b","updated":"2024-09-10 02:09:51.000000000","message":"Done","commit_id":"78474d00f06ae0d9e3ccc8c4b9cdaec8afc29ab7"},{"author":{"_account_id":36938,"name":"Kyaw Myo Thant","display_name":"Kyaw Myo Thant","email":"kyawmyothant@ntt-at.co.jp","username":"AT-Kyawmyothant"},"change_message_id":"bb73558ec6c7eef18483812bbfd5586c38cbb3cd","unresolved":true,"context_lines":[{"line_number":11,"context_line":"Overview"},{"line_number":12,"context_line":"~~~~~~~~"},{"line_number":13,"context_line":""},{"line_number":14,"context_line":"OAuth 2.0 Mutual-TLS (mTLS) Client Authentication based on `RFC8705`_ is"},{"line_number":15,"context_line":"implemented as an extension of Tacker. As an API client, Tacker can use a"},{"line_number":16,"context_line":"mTLS connection to access the Notification server and the External NFVO server."},{"line_number":17,"context_line":""}],"source_content_type":"text/x-rst","patch_set":5,"id":"45e64dae_b5e4593b","line":14,"in_reply_to":"72d14a48_a038f967","updated":"2024-09-09 07:33:14.000000000","message":"Changed.","commit_id":"78474d00f06ae0d9e3ccc8c4b9cdaec8afc29ab7"},{"author":{"_account_id":33455,"name":"Hiromu Asahina","email":"hiromu.a5a@gmail.com","username":"h_asahina"},"change_message_id":"215c277eca07a2df6068375d20c0f3c074e42d76","unresolved":true,"context_lines":[{"line_number":18,"context_line":"Guide"},{"line_number":19,"context_line":"~~~~~"},{"line_number":20,"context_line":""},{"line_number":21,"context_line":"You can enable Tacker server to support mTLS Client Authentication by the"},{"line_number":22,"context_line":"following steps in this guide. In this example, ``tacker.host`` is the domain"},{"line_number":23,"context_line":"name used by the Tacker server."},{"line_number":24,"context_line":""}],"source_content_type":"text/x-rst","patch_set":5,"id":"90a78a87_373fd844","line":21,"updated":"2024-09-02 09:50:14.000000000","message":"ditto","commit_id":"78474d00f06ae0d9e3ccc8c4b9cdaec8afc29ab7"},{"author":{"_account_id":36938,"name":"Kyaw Myo Thant","display_name":"Kyaw Myo Thant","email":"kyawmyothant@ntt-at.co.jp","username":"AT-Kyawmyothant"},"change_message_id":"bb73558ec6c7eef18483812bbfd5586c38cbb3cd","unresolved":true,"context_lines":[{"line_number":18,"context_line":"Guide"},{"line_number":19,"context_line":"~~~~~"},{"line_number":20,"context_line":""},{"line_number":21,"context_line":"You can enable Tacker server to support mTLS Client Authentication by the"},{"line_number":22,"context_line":"following steps in this guide. In this example, ``tacker.host`` is the domain"},{"line_number":23,"context_line":"name used by the Tacker server."},{"line_number":24,"context_line":""}],"source_content_type":"text/x-rst","patch_set":5,"id":"d7bc6cdc_d62d8008","line":21,"in_reply_to":"90a78a87_373fd844","updated":"2024-09-09 07:33:14.000000000","message":"ditto","commit_id":"78474d00f06ae0d9e3ccc8c4b9cdaec8afc29ab7"},{"author":{"_account_id":36938,"name":"Kyaw Myo Thant","display_name":"Kyaw Myo Thant","email":"kyawmyothant@ntt-at.co.jp","username":"AT-Kyawmyothant"},"change_message_id":"203644a7dbf33278c4cab1e032cb9a27280e3d62","unresolved":true,"context_lines":[{"line_number":18,"context_line":"Guide"},{"line_number":19,"context_line":"~~~~~"},{"line_number":20,"context_line":""},{"line_number":21,"context_line":"You can enable Tacker server to support mTLS Client Authentication by the"},{"line_number":22,"context_line":"following steps in this guide. In this example, ``tacker.host`` is the domain"},{"line_number":23,"context_line":"name used by the Tacker server."},{"line_number":24,"context_line":""}],"source_content_type":"text/x-rst","patch_set":5,"id":"3da9477f_6048aa59","line":21,"in_reply_to":"a44e9db9_323073e0","updated":"2024-09-10 04:41:53.000000000","message":"Yes, I agreed.\nThe short term is better than a repetitive usage of long term.\nChanged.","commit_id":"78474d00f06ae0d9e3ccc8c4b9cdaec8afc29ab7"},{"author":{"_account_id":33455,"name":"Hiromu Asahina","email":"hiromu.a5a@gmail.com","username":"h_asahina"},"change_message_id":"776ecc463cd6117b10d17871fd1e0575a7e3ad7d","unresolved":true,"context_lines":[{"line_number":18,"context_line":"Guide"},{"line_number":19,"context_line":"~~~~~"},{"line_number":20,"context_line":""},{"line_number":21,"context_line":"You can enable Tacker server to support mTLS Client Authentication by the"},{"line_number":22,"context_line":"following steps in this guide. In this example, ``tacker.host`` is the domain"},{"line_number":23,"context_line":"name used by the Tacker server."},{"line_number":24,"context_line":""}],"source_content_type":"text/x-rst","patch_set":5,"id":"a44e9db9_323073e0","line":21,"in_reply_to":"d7bc6cdc_d62d8008","updated":"2024-09-10 02:09:51.000000000","message":"nits.\nMaybe you can use the short form (i.e., mTLS) in this case.","commit_id":"78474d00f06ae0d9e3ccc8c4b9cdaec8afc29ab7"}]}
