Problem/Opportunity
We currently have a couple of places where requests calls take verify=False and we disable warnings. We need to provide the correct certificates and stop disabling warnings to prevent MITM attacks.
Proposed Solution
The current proposed solution is to find a way to provide the certs on our end, without affecting the config. Therefore all this change would be would be removing verify=False and the warning disabling lines.
This may need changing in the future to allow other users to provide their own certificates for their own internal websites through the config.
Acceptance Criteria (Optional)
No response
Additional Notes (Optional)
No response
Problem/Opportunity
We currently have a couple of places where requests calls take verify=False and we disable warnings. We need to provide the correct certificates and stop disabling warnings to prevent MITM attacks.
Proposed Solution
The current proposed solution is to find a way to provide the certs on our end, without affecting the config. Therefore all this change would be would be removing verify=False and the warning disabling lines.
This may need changing in the future to allow other users to provide their own certificates for their own internal websites through the config.
Acceptance Criteria (Optional)
No response
Additional Notes (Optional)
No response