You are viewing a plain text version of this content. The canonical link for it is here.
Posted to commits@cassandra.apache.org by "Jeff Liu (JIRA)" <ji...@apache.org> on 2015/01/31 01:17:34 UTC

[jira] [Updated] (CASSANDRA-8711) cassandra 2.1.2 ssl client encryption not working

     [ https://issues.apache.org/jira/browse/CASSANDRA-8711?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Jeff Liu updated CASSANDRA-8711:
--------------------------------
    Description: 
I have been trying to setup client encryption on a three nodes 2.1.2 version cassandra cluster and keep getting the following error:
{noformat}
Connection error: ('Unable to connect to any servers', {'localhost': ConnectionShutdown('Connection <AsyncoreConnection(44536208) localhost:9160 (closed)> is already closed',)})
{noformat}

I tried with both cqlsh and datatax python cassandra-driver and no luck to login.

I created /rooot/.cassandra/cqlshrc file for cqlsh settings, the content is:
{noformat}
[authentication]
username =
password =

[connection]
hostname = localhost
port = 9160
factory = cqlshlib.ssl.ssl_transport_factory

[ssl]
certfile = /root/.cassandra/localhost_user1.pem
validate = false ## Optional, true by default
{/noformat}

my cassandra.yaml configuration related to client_encryptions:
{noformat}
client_encryption_options:
    enabled: True
    keystore: /etc/cassandra/conf/.keystore
    keystore_password: cassnest
{noformat}

the keystore, truststore, cert/pem key have been verified to be working fine for datastax enterprise version.


  was:
I have been trying to setup client encryption on a three nodes 2.1.2 version cassandra cluster and keep getting the following error:
{noformat}
Connection error: ('Unable to connect to any servers', {'localhost': ConnectionShutdown('Connection <AsyncoreConnection(44536208) localhost:9160 (closed)> is already closed',)})
{noformat}

I tried with both cqlsh and datatax python cassandra-driver and no luck to login.

I created /rooot/.cassandra/cqlshrc file for cqlsh settings, the content is:
{/noformat}
[authentication]
username =
password =

[connection]
hostname = localhost
port = 9160
factory = cqlshlib.ssl.ssl_transport_factory

[ssl]
certfile = /root/.cassandra/localhost_user1.pem
validate = false ## Optional, true by default
{/noformat}

my cassandra.yaml configuration related to client_encryptions:
{noformat}
client_encryption_options:
    enabled: True
    keystore: /etc/cassandra/conf/.keystore
    keystore_password: cassnest
{noformat}

the keystore, truststore, cert/pem key have been verified to be working fine for datastax enterprise version.



> cassandra 2.1.2 ssl client encryption not working 
> --------------------------------------------------
>
>                 Key: CASSANDRA-8711
>                 URL: https://issues.apache.org/jira/browse/CASSANDRA-8711
>             Project: Cassandra
>          Issue Type: Bug
>            Reporter: Jeff Liu
>
> I have been trying to setup client encryption on a three nodes 2.1.2 version cassandra cluster and keep getting the following error:
> {noformat}
> Connection error: ('Unable to connect to any servers', {'localhost': ConnectionShutdown('Connection <AsyncoreConnection(44536208) localhost:9160 (closed)> is already closed',)})
> {noformat}
> I tried with both cqlsh and datatax python cassandra-driver and no luck to login.
> I created /rooot/.cassandra/cqlshrc file for cqlsh settings, the content is:
> {noformat}
> [authentication]
> username =
> password =
> [connection]
> hostname = localhost
> port = 9160
> factory = cqlshlib.ssl.ssl_transport_factory
> [ssl]
> certfile = /root/.cassandra/localhost_user1.pem
> validate = false ## Optional, true by default
> {/noformat}
> my cassandra.yaml configuration related to client_encryptions:
> {noformat}
> client_encryption_options:
>     enabled: True
>     keystore: /etc/cassandra/conf/.keystore
>     keystore_password: cassnest
> {noformat}
> the keystore, truststore, cert/pem key have been verified to be working fine for datastax enterprise version.



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)