You are viewing a plain text version of this content. The canonical link for it is here.
Posted to common-issues@hadoop.apache.org by "Aaron T. Myers (JIRA)" <ji...@apache.org> on 2014/04/03 01:05:15 UTC

[jira] [Commented] (HADOOP-10429) KeyStores should have methods to generate the materials themselves, KeyShell should use them

    [ https://issues.apache.org/jira/browse/HADOOP-10429?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=13958304#comment-13958304 ] 

Aaron T. Myers commented on HADOOP-10429:
-----------------------------------------

+1, the latest patch looks good to me.

Thanks, Tucu.

> KeyStores should have methods to generate the materials themselves, KeyShell should use them
> --------------------------------------------------------------------------------------------
>
>                 Key: HADOOP-10429
>                 URL: https://issues.apache.org/jira/browse/HADOOP-10429
>             Project: Hadoop Common
>          Issue Type: Improvement
>          Components: security
>    Affects Versions: 3.0.0
>            Reporter: Alejandro Abdelnur
>            Assignee: Alejandro Abdelnur
>         Attachments: HADOOP-10429.patch
>
>
> Currently, the {{KeyProvider}} API expects the caller to provide the key materials. And, the {{KeyShell}} generates key materials.
> For security reasons, {{KeyProvider}} implementations may want to generate and hide (from the user generating the key) the key materials.



--
This message was sent by Atlassian JIRA
(v6.2#6252)