cassandra-commits mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Ariel Weisberg (JIRA)" <j...@apache.org>
Subject [jira] [Comment Edited] (CASSANDRA-9085) Bind JMX to localhost unless explicitly configured otherwise
Date Wed, 11 Nov 2015 21:00:13 GMT

    [ https://issues.apache.org/jira/browse/CASSANDRA-9085?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=15001071#comment-15001071
] 

Ariel Weisberg edited comment on CASSANDRA-9085 at 11/11/15 8:59 PM:
---------------------------------------------------------------------

I've had to deal with the RMI GC issue before. There are properties you can set to have the
GCs occur less often/never so you can allow explicit gc for things like DBB memory. I also
think it's longer than 30 seconds by default?

This is where I last had to tackle it https://issues.voltdb.com/browse/ENG-5856

We actually don't want to disable explicit GC as it has valid uses for reclaiming direct byte
buffers. The alternative is an OOM when maybe there doesn't have to be.

If you are very confident in your DBB handling and deallocate explicitly then maybe it isn't
an issue but it makes me uncomfortable.


was (Author: aweisberg):
I've had to deal with the RMI GC issue before. There are properties you can set to have the
GCs occur less often/never so you can allow explicit gc for things like DBB memory. I also
think it's longer than 30 seconds by default?

This is where I last had to tackle it https://issues.voltdb.com/browse/ENG-5856

We actually don't want to enable explicit GC as it has valid uses for reclaiming direct byte
buffers.

> Bind JMX to localhost unless explicitly configured otherwise
> ------------------------------------------------------------
>
>                 Key: CASSANDRA-9085
>                 URL: https://issues.apache.org/jira/browse/CASSANDRA-9085
>             Project: Cassandra
>          Issue Type: Bug
>            Reporter: T Jake Luciani
>            Assignee: T Jake Luciani
>            Priority: Critical
>             Fix For: 2.0.14, 2.1.4
>
>
> Cassandra's default JMX config can lead to someone executing arbitrary code:  see http://www.mail-archive.com/user@cassandra.apache.org/msg41819.html



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)

Mime
View raw message