You are viewing a plain text version of this content. The canonical link for it is here.
Posted to issues@hive.apache.org by "Ruslan Dautkhanov (Jira)" <ji...@apache.org> on 2020/02/12 16:18:00 UTC

[jira] [Commented] (HIVE-15025) Secure-Socket-Layer (SSL) support for HMS

    [ https://issues.apache.org/jira/browse/HIVE-15025?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17035490#comment-17035490 ] 

Ruslan Dautkhanov commented on HIVE-15025:
------------------------------------------

Would a Hive 1.2 client be able to connect to Hive 2.3 HMS server with SSL enabled, or this would require 
HMS client to be at least version 2.3 too? 

Also, is `*hive.metastore.truststore.path`* accepted by both server and client code? 

Thanks! 

> Secure-Socket-Layer (SSL) support for HMS
> -----------------------------------------
>
>                 Key: HIVE-15025
>                 URL: https://issues.apache.org/jira/browse/HIVE-15025
>             Project: Hive
>          Issue Type: Improvement
>          Components: Metastore
>    Affects Versions: 2.2.0
>            Reporter: Aihua Xu
>            Assignee: Aihua Xu
>            Priority: Major
>              Labels: TODOC2.2
>             Fix For: 2.3.0
>
>         Attachments: HIVE-15025.1.patch, HIVE-15025.2.patch, HIVE-15025.3.patch, HIVE-15025.addendum
>
>
> HMS server should support SSL encryption. When the server is keberos enabled, the encryption can be enabled. But if keberos is not enabled, then there is no encryption between HS2 and HMS. 
> Similar to HS2, we should support encryption in both cases.



--
This message was sent by Atlassian Jira
(v8.3.4#803005)