Return-Path: X-Original-To: apmail-lucene-solr-user-archive@minotaur.apache.org Delivered-To: apmail-lucene-solr-user-archive@minotaur.apache.org Received: from mail.apache.org (hermes.apache.org [140.211.11.3]) by minotaur.apache.org (Postfix) with SMTP id 48BBC1775A for ; Mon, 3 Nov 2014 22:36:41 +0000 (UTC) Received: (qmail 53780 invoked by uid 500); 3 Nov 2014 22:36:36 -0000 Delivered-To: apmail-lucene-solr-user-archive@lucene.apache.org Received: (qmail 53715 invoked by uid 500); 3 Nov 2014 22:36:36 -0000 Mailing-List: contact solr-user-help@lucene.apache.org; run by ezmlm Precedence: bulk List-Help: List-Unsubscribe: List-Post: List-Id: Reply-To: solr-user@lucene.apache.org Delivered-To: mailing list solr-user@lucene.apache.org Received: (qmail 53382 invoked by uid 99); 3 Nov 2014 22:36:36 -0000 Received: from athena.apache.org (HELO athena.apache.org) (140.211.11.136) by apache.org (qpsmtpd/0.29) with ESMTP; Mon, 03 Nov 2014 22:36:36 +0000 X-ASF-Spam-Status: No, hits=-0.0 required=5.0 tests=RCVD_IN_DNSWL_LOW,SPF_NEUTRAL X-Spam-Check-By: apache.org Received-SPF: neutral (athena.apache.org: local policy) Received: from [209.85.212.176] (HELO mail-wi0-f176.google.com) (209.85.212.176) by apache.org (qpsmtpd/0.29) with ESMTP; Mon, 03 Nov 2014 22:36:31 +0000 Received: by mail-wi0-f176.google.com with SMTP id h11so7860108wiw.9 for ; Mon, 03 Nov 2014 14:33:54 -0800 (PST) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:content-type:mime-version:subject:from :in-reply-to:date:content-transfer-encoding:message-id:references:to; bh=5e6z5xFwW5PaBFrcrqzFwki6MUqym+A9VJ/d+4Ox+1M=; b=LKyZSyGlxNdzU9jbCL3Fy3g82yVzuki3EQ6yDedhmf3UaBeUHN75H9K4vZPO/+9YIc 3wKf3GvNhw2W9OjdhZn7zC3mvNnY3RHMc6E6fj40QVDgNMh1UBqgpSZTNStZaos2puep 4E3cJUD4t8c5ahCy6UWZDnDVJ/p0+5oobiOEDzqu/t0sDoPclOVq5jMzT8aKRID4+Fd+ NqP6Z7JgOlbXGth/JVYcvmAnInrjP7g9S0TAlwVs+KFgkB4d4DcDdLKOG0lGCKE4UOXG KMprsrxsI9Mv2EzVSeDSAhlsqz1I2HQrIMdlHd6xqHfcpnqP4096rpY/XQHdXvJb6xnX X3FA== X-Gm-Message-State: ALoCoQnoSsfhSOD0UBKGxgqFgU2lWLOnmFllpBl4K0TYKsqD6vWMseBooTFVaWHOCKs4kwbn6Gf9 X-Received: by 10.181.8.98 with SMTP id dj2mr19267480wid.70.1415054034814; Mon, 03 Nov 2014 14:33:54 -0800 (PST) Received: from [192.168.56.80] (static-5-103-13-78.energifyn.net. [5.103.13.78]) by mx.google.com with ESMTPSA id x3sm3231040wiy.4.2014.11.03.14.33.54 for (version=TLSv1 cipher=ECDHE-RSA-RC4-SHA bits=128/128); Mon, 03 Nov 2014 14:33:54 -0800 (PST) Content-Type: text/plain; charset=utf-8 Mime-Version: 1.0 (Mac OS X Mail 8.0 \(1990.1\)) Subject: Re: Which Solr releases contain SOLR-4470 (Security for inter-solr-node requests) From: =?utf-8?Q?Jan_H=C3=B8ydahl?= In-Reply-To: <9CA61F0598F2774FBA4540A79DE3DB671042694E76@sho-p-excmbx-01.sentry.com> Date: Mon, 3 Nov 2014 23:33:23 +0100 Content-Transfer-Encoding: quoted-printable Message-Id: <05DD07B7-7D82-4020-AFFF-310523BEF930@cominvent.com> References: <9CA61F0598F2774FBA4540A79DE3DB671042694E76@sho-p-excmbx-01.sentry.com> To: solr-user@lucene.apache.org X-Mailer: Apple Mail (2.1990.1) X-Virus-Checked: Checked by ClamAV on apache.org You find the answer to such questions by looking at the state of the = JIRA issue https://issues.apache.org/jira/browse/SOLR-4470 Staus: Open Fix version: Trunk Which means that this feature is not included in any released Solr = version (yet). -- Jan H=C3=B8ydahl, search solution architect Cominvent AS - www.cominvent.com > 3. nov. 2014 kl. 22.39 skrev Yuan Jerry : >=20 > I am currently working on SolrCloud and its related security = configurations for securing Solr web applications using HTTP Basic = Authentication mechanism. Among the Solr nodes inside the SolrCloud = clustered env, there seem to be existing some inter-solr-node = communication issues due to the security configurations, which are the = HTTP Authentication errors. Based on my research, the patch SOLR-4470 = (Security for inter-solr-node requests) would be ideal for resolving = these issues (please refer to the address: = https://wiki.apache.org/solr/SolrSecurity#Security_for_inter-solr-node_req= uests). However, it seems to me that these security patches are = out-of-box additions to the current Solr source codebase, which don't = seem to be available in the recent Solr releases. >=20 > If someone could point out which Solr releases or the jars from some = online repositories that contain this patch, it would be appreciated = very much. >=20 > Jerry >=20 >=20 > This e-mail is confidential. If you are not the intended recipient, = you must not disclose or use the information contained in it. If you = have received this e-mail in error, please tell us immediately by return = e-mail and delete the document. No recipient may use the information in = this e-mail in violation of any civil or criminal statute. Sentry = disclaims all liability for any unauthorized uses of this e-mail or its = contents. Sentry accepts no liability or responsibility for any damage = caused by any virus transmitted with this e-mail.