Skip to content

Envoy gateway: BSI TR-02102-2 TLS (FIPS2022) mode, and TLS 1.3+PQoptions by default - #5480

Open
jschaul wants to merge 2 commits into
developfrom
tr-conformance-envoy
Open

jschaul wants to merge 2 commits into
developfrom
tr-conformance-envoy

Conversation

@jschaul

@jschaul jschaul commented Aug 25, 2026

Copy link
Copy Markdown
Member

See https://wearezeta.atlassian.net/browse/WPB-27369

This has been deployed to a few internal environments with different settings; the results can be seen under https://wearezeta.atlassian.net/wiki/spaces/PET/pages/3280273465/TLS+versions+ciphers+ingress+nginx+envoy

Checklist

  • Add a new entry in an appropriate subdirectory of changelog.d
  • Read and follow the PR guidelines

@zebot zebot added the ok-to-test Approved for running tests in CI, overrides not-ok-to-test if both labels exist label Aug 25, 2026
@jschaul
jschaul force-pushed the tr-conformance-envoy branch from dc7b8cf to 137c88c Compare September 10, 2026 11:17
@jschaul jschaul changed the title envoy gateway: BSI TR-02102-2 TLS settings WIP: envoy gateway: BSI TR-02102-2 TLS settings Sep 10, 2026
@jschaul jschaul changed the title WIP: envoy gateway: BSI TR-02102-2 TLS settings Envoy gateway: BSI TR-02102-2 TLS (FIPS2022) mode, and TLS 1.3+PQoptions by default Sep 17, 2026
@jschaul
jschaul marked this pull request as ready for review September 17, 2026 15:41
@jschaul
jschaul requested review from a team as code owners September 17, 2026 15:41
envoy gateway: BSI TR-02102-2 TLS settings

This has been deployed to a few internal environments with different settings; the results can be seen under https://wearezeta.atlassian.net/wiki/spaces/PET/pages/3280273465/TLS+versions+ciphers+ingress+nginx+envoy

 - [x] Add a new entry in an appropriate subdirectory of `changelog.d`
 - [x] Read and follow the [PR guidelines](https://docs.wire.com/latest/developer/developer/pr-guidelines.html)
@jschaul
jschaul force-pushed the tr-conformance-envoy branch from 0855d50 to 08d0b1f Compare September 17, 2026 17:56
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

ok-to-test Approved for running tests in CI, overrides not-ok-to-test if both labels exist

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants