zookeeper-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From ivmaykov <...@git.apache.org>
Subject [GitHub] zookeeper pull request #680: ZOOKEEPER-3174: Quorum TLS - support reloading ...
Date Tue, 11 Dec 2018 00:03:35 GMT
GitHub user ivmaykov reopened a pull request:

    https://github.com/apache/zookeeper/pull/680

    ZOOKEEPER-3174: Quorum TLS - support reloading trust/key store

    Allow reloading SSL trust stores and key stores from disk when the files on disk change.
    
    ## Added support for reloading key/trust stores when the file on disk changes
    - new property `sslQuorumReloadCertFiles` which controls the behavior for reloading the
key and trust store files for `QuorumX509Util`. Reloading of key and trust store for `ClientX509Util`
is not in this PR but could be added easily
    - this allows a ZK server to keep running on a machine that uses short-lived certs that
refresh frequently without having to restart the ZK process.

You can merge this pull request into a Git repository by running:

    $ git pull https://github.com/ivmaykov/zookeeper ZOOKEEPER-3174

Alternatively you can review and apply these changes as the patch at:

    https://github.com/apache/zookeeper/pull/680.patch

To close this pull request, make a commit to your master/trunk branch
with (at least) the following in the commit message:

    This closes #680
    
----
commit cc72c083c0b70409d78da11507ca5e80e726bb69
Author: Ilya Maykov <ilyam@...>
Date:   2018-10-25T01:54:06Z

    ZOOKEEPER-3174: Quorum TLS - support reloading trust/key store

----


---

Mime
View raw message