You are viewing a plain text version of this content. The canonical link for it is here.
Posted to issues@nifi.apache.org by "ASF subversion and git services (Jira)" <ji...@apache.org> on 2022/11/28 23:03:00 UTC

[jira] [Commented] (NIFI-10882) ElasticSearchClientService should not allow both BASIC and API_KEY properties to be set simultaneously

    [ https://issues.apache.org/jira/browse/NIFI-10882?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17640288#comment-17640288 ] 

ASF subversion and git services commented on NIFI-10882:
--------------------------------------------------------

Commit 43a8b858ca2837554a36c121af3680e0d4eecd9e in nifi's branch refs/heads/main from Chris Sampson
[ https://gitbox.apache.org/repos/asf?p=nifi.git;h=43a8b858ca ]

NIFI-10882 Set credentials for ElasticSearchClientService based on AuthorizationScheme

This closes #6722

Signed-off-by: David Handermann <ex...@apache.org>


> ElasticSearchClientService should not allow both BASIC and API_KEY properties to be set simultaneously
> ------------------------------------------------------------------------------------------------------
>
>                 Key: NIFI-10882
>                 URL: https://issues.apache.org/jira/browse/NIFI-10882
>             Project: Apache NiFi
>          Issue Type: Bug
>    Affects Versions: 1.19.0
>            Reporter: Chris Sampson
>            Assignee: Chris Sampson
>            Priority: Major
>          Time Spent: 0.5h
>  Remaining Estimate: 0h
>
> While the {{ElasticSearchClientService}} will show/hide Controller Service properties based on the currently selected {{AuthorizationScheme}}, it is possible for a user to set {{BASIC}} credentials (e.g. {{Username}}/{{Password}}) then later switch to {{API_KEY}} auth without removing the {{BASIC}} properties - this leads to multiple {{Authorization}} headers being configured in requests to Elasticsearch, which is unexpected.



--
This message was sent by Atlassian Jira
(v8.20.10#820010)