Merge pull request #544 from olivierlemasle/minversion

Set MinVersion: tls.VersionTLS12 in prometheus client's TLSClientConfig
This commit is contained in:
Kubernetes Prow Robot 2022-11-29 09:11:24 -08:00 committed by GitHub
commit a5faf9f920
No known key found for this signature in database
GPG key ID: 4AEE18F83AFDEB23

View file

@ -408,10 +408,10 @@ func makePrometheusCAClient(caFilePath string, tlsCertFilePath string, tlsKeyFil
}
return &http.Client{
Transport: &http.Transport{
//nolint:gosec
TLSClientConfig: &tls.Config{
RootCAs: pool,
Certificates: []tls.Certificate{tlsClientCerts},
MinVersion: tls.VersionTLS12,
},
},
}, nil
@ -419,9 +419,9 @@ func makePrometheusCAClient(caFilePath string, tlsCertFilePath string, tlsKeyFil
return &http.Client{
Transport: &http.Transport{
//nolint:gosec
TLSClientConfig: &tls.Config{
RootCAs: pool,
RootCAs: pool,
MinVersion: tls.VersionTLS12,
},
},
}, nil