Return-Path: X-Original-To: archive-asf-public-internal@cust-asf2.ponee.io Delivered-To: archive-asf-public-internal@cust-asf2.ponee.io Received: from cust-asf.ponee.io (cust-asf.ponee.io [163.172.22.183]) by cust-asf2.ponee.io (Postfix) with ESMTP id 60132200B80 for ; Wed, 14 Sep 2016 19:14:15 +0200 (CEST) Received: by cust-asf.ponee.io (Postfix) id 5EAC0160AB4; Wed, 14 Sep 2016 17:14:15 +0000 (UTC) Delivered-To: archive-asf-public@cust-asf.ponee.io Received: from mail.apache.org (hermes.apache.org [140.211.11.3]) by cust-asf.ponee.io (Postfix) with SMTP id CC020160AB3 for ; Wed, 14 Sep 2016 19:14:14 +0200 (CEST) Received: (qmail 77541 invoked by uid 500); 14 Sep 2016 17:14:13 -0000 Mailing-List: contact dev-help@accumulo.apache.org; run by ezmlm Precedence: bulk List-Help: List-Unsubscribe: List-Post: List-Id: Reply-To: dev@accumulo.apache.org Delivered-To: mailing list dev@accumulo.apache.org Received: (qmail 77526 invoked by uid 99); 14 Sep 2016 17:14:13 -0000 Received: from git1-us-west.apache.org (HELO git1-us-west.apache.org) (140.211.11.23) by apache.org (qpsmtpd/0.29) with ESMTP; Wed, 14 Sep 2016 17:14:13 +0000 Received: by git1-us-west.apache.org (ASF Mail Server at git1-us-west.apache.org, from userid 33) id 8A77FE07FE; Wed, 14 Sep 2016 17:14:13 +0000 (UTC) From: ctubbsii To: dev@accumulo.apache.org Reply-To: dev@accumulo.apache.org References: In-Reply-To: Subject: [GitHub] accumulo pull request #151: ACCUMULO-3626: Reset security should warn and re... Content-Type: text/plain Message-Id: <20160914171413.8A77FE07FE@git1-us-west.apache.org> Date: Wed, 14 Sep 2016 17:14:13 +0000 (UTC) archived-at: Wed, 14 Sep 2016 17:14:15 -0000 Github user ctubbsii commented on a diff in the pull request: https://github.com/apache/accumulo/pull/151#discussion_r78792461 --- Diff: server/base/src/main/java/org/apache/accumulo/server/init/Initialize.java --- @@ -762,6 +764,17 @@ public void execute(final String[] args) { if (opts.resetSecurity) { AccumuloServerContext context = new AccumuloServerContext(new ServerConfigurationFactory(HdfsZooInstance.getInstance())); if (isInitialized(fs)) { + if (!opts.forceResetSecurity) { + String secret = acuConf.get(Property.INSTANCE_SECRET); + ConsoleReader c = getConsoleReader(); + String userEnteredSecret = c.readLine("WARNING: This will remove all users from Accumulo! If you wish to proceed enter the instance secret: ", '*'); --- End diff -- The prompt for the secret is similar to how GitHub asks you to type the name of the repo, to be sure you really want to delete it. It's not a security check. The user running this command already needs access to the server configuration file containing the secret. It's just a sanity check. Instead of the secret, it could prompt for the instance name or ID. --- If your project is set up for it, you can reply to this email and have your reply appear on GitHub as well. If your project does not have this feature enabled and wishes so, or if the feature is enabled but not working, please contact infrastructure at infrastructure@apache.org or file a JIRA ticket with INFRA. ---