hadoop-common-issues mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "John Zhuge (JIRA)" <j...@apache.org>
Subject [jira] [Updated] (HADOOP-14352) Make some HttpServer2 SSL properties optional
Date Tue, 25 Apr 2017 17:57:04 GMT

     [ https://issues.apache.org/jira/browse/HADOOP-14352?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]

John Zhuge updated HADOOP-14352:
--------------------------------
    Attachment: HADOOP-14352.001.patch

Patch 001
* Add a new method {{HttpServer2$Build#getOptionalPassword}} that returns null when the password
not found
* Change {{HttpServer2$Build#loadSSLConfiguration}} not to require keystore keypassword, trust
store location, and trust store password

Testing done
* KMS and HttpFS sanity tests in SSL mode

> Make some HttpServer2 SSL properties optional
> ---------------------------------------------
>
>                 Key: HADOOP-14352
>                 URL: https://issues.apache.org/jira/browse/HADOOP-14352
>             Project: Hadoop Common
>          Issue Type: Improvement
>          Components: kms
>    Affects Versions: 3.0.0-alpha2
>            Reporter: John Zhuge
>            Assignee: John Zhuge
>            Priority: Minor
>         Attachments: HADOOP-14352.001.patch
>
>
> {{HttpServer2#loadSSLConfiguration}} loads 5 SSL properties but only keystore location
and password are required, the rest of them, keystore keypassword, truststore location, and
truststore password, can be optional.
> According to http://www.eclipse.org/jetty/documentation/current/configuring-ssl.html:
> * If there is no keymanagerpassword, then the keystorepassword is used instead.
> * Trust store is typically set to the same path as the keystore.



--
This message was sent by Atlassian JIRA
(v6.3.15#6346)

---------------------------------------------------------------------
To unsubscribe, e-mail: common-issues-unsubscribe@hadoop.apache.org
For additional commands, e-mail: common-issues-help@hadoop.apache.org


Mime
View raw message