Aaron T. Myers
|
834533fdfc
|
HADOOP-11176. KMSClientProvider authentication fails when both currentUgi and loginUgi are a proxied user. Contributed by Arun Suresh.
(cherry picked from commit 0e57aa3bf6 )
(cherry picked from commit f3132eee10 )
|
2014-10-13 18:10:40 -07:00 |
Andrew Wang
|
2c27b7b26f
|
HADOOP-11169. Fix DelegationTokenAuthenticatedURL to pass the connection Configurator to the authenticator. (Arun Suresh via wang)
(cherry picked from commit b2f6197523 )
|
2014-10-07 14:51:52 -07:00 |
Andrew Wang
|
ac510c3610
|
HADOOP-11151. Automatically refresh auth token and retry on auth failure. Contributed by Arun Suresh.
(cherry picked from commit 2d8e6e2c4a )
(cherry picked from commit 9ebff016c2 )
|
2014-10-02 20:00:22 -07:00 |
Andrew Wang
|
e2351e8512
|
HADOOP-11113. Namenode not able to reconnect to KMS after KMS restart. (Arun Suresh via wang)
(cherry picked from commit e25a25c5343c889d8c9e45b65082ddb55cf36d52)
|
2014-09-30 16:48:27 -07:00 |
Andrew Wang
|
758fb8465a
|
HADOOP-11153. Make number of KMS threads configurable. (wang)
(cherry picked from commit 64aef18965 )
|
2014-09-29 15:04:26 -07:00 |
Andrew Wang
|
3cf28210ec
|
HDFS-6987. Move CipherSuite xattr information up to the encryption zone root. (Zhe Zhang via wang)
|
2014-09-24 12:11:45 -07:00 |
Andrew Wang
|
eec927f3fc
|
HADOOP-11112. TestKMSWithZK does not use KEY_PROVIDER_URI. (tucu via wang)
(cherry picked from commit b6ceef90e5 )
|
2014-09-19 17:42:11 -07:00 |
Andrew Wang
|
ee508c1b32
|
HADOOP-10970. Cleanup KMS configuration keys. (wang)
(cherry picked from commit adf0b67a71 )
|
2014-09-19 15:03:26 -07:00 |
Aaron T. Myers
|
71e6a4a735
|
HADOOP-11109. Site build is broken. Contributed by Jian He.
(cherry picked from commit 0e2b64f2029cabbbf05a132625244427f8bf9518)
|
2014-09-18 18:00:07 -07:00 |
Alejandro Abdelnur
|
22f4ef4fa9
|
KMS: Support for multiple Kerberos principals. (tucu)
(cherry picked from commit fad4cd85b3 )
|
2014-09-18 16:04:18 -07:00 |
Andrew Wang
|
b477d30e63
|
HDFS-7004. Update KeyProvider instantiation to create by URI. (wang)
(cherry picked from commit 10e8602f32 )
|
2014-09-17 20:15:42 -07:00 |
Alejandro Abdelnur
|
d3efebf4aa
|
HADOOP-11016. KMS should support signing cookies with zookeeper secret manager. (tucu)
(cherry picked from commit 123f20d42f )
Conflicts:
hadoop-common-project/hadoop-common/CHANGES.txt
|
2014-09-17 15:30:56 -07:00 |
Alejandro Abdelnur
|
6857c291af
|
HADOOP-11099. KMS return HTTP UNAUTHORIZED 401 on ACL failure. (tucu)
(cherry picked from commit e4ddb6da15 )
|
2014-09-17 11:08:25 -07:00 |
Alejandro Abdelnur
|
75bd79231c
|
HADOOP-11097. kms docs say proxyusers, not proxyuser for config params. (clamb via tucu)
|
2014-09-16 23:21:17 -07:00 |
Alejandro Abdelnur
|
94a1e68aa5
|
HADOOP-11096. KMS: KeyAuthorizationKeyProvider should verify the keyversion belongs to the keyname on decrypt. (tucu)
|
2014-09-16 23:21:17 -07:00 |
Alejandro Abdelnur
|
5d897026e4
|
HDFS-7006. Test encryption zones with KMS. (Anthony Young-Garner and tucu)
|
2014-09-16 14:37:04 -07:00 |
cnauroth
|
5afc3f1dad
|
HADOOP-11088. Unittest TestKeyShell, TestCredShell and TestKMS assume UNIX path separator for JECKS key store path. Contributed by Xiaoyu Yao.
(cherry picked from commit 957414d4cb )
|
2014-09-12 14:50:37 -07:00 |
Alejandro Abdelnur
|
88e5549d90
|
HADOOP-10758. KMS: add ACLs on per key basis. (tucu)
|
2014-09-10 14:27:22 -07:00 |
Alejandro Abdelnur
|
d510cefd14
|
HADOOP-11071. KMSClientProvider should drain the local generated EEK cache on key rollover. (tucu)
|
2014-09-08 11:32:20 -07:00 |
Alejandro Abdelnur
|
8bf2a0de69
|
HADOOP-11069. KMSClientProvider should use getAuthenticationMethod() to determine if in proxyuser mode or not. (tucu)
|
2014-09-05 22:01:13 -07:00 |
Alejandro Abdelnur
|
e98c244730
|
HADOOP-11070. Create MiniKMS for testing. (tucu)
|
2014-09-05 22:01:06 -07:00 |
cnauroth
|
c035365338
|
HADOOP-11063. KMS cannot deploy on Windows, because class names are too long. Contributed by Chris Nauroth.
(cherry picked from commit b44b2ee4ad )
|
2014-09-04 12:09:34 -07:00 |
Alejandro Abdelnur
|
dc2e38780b
|
HADOOP-11015. Http server/client utils to propagate and recreate Exceptions from server to client. (tucu)
|
2014-09-04 09:14:07 -07:00 |
Alejandro Abdelnur
|
a7d8ede309
|
HADOOP-10863. KMS should have a blacklist for decrypting EEKs. (asuresh via tucu)
Conflicts:
hadoop-common-project/hadoop-kms/src/main/java/org/apache/hadoop/crypto/key/kms/server/KMS.java
|
2014-09-03 15:20:28 -07:00 |
Alejandro Abdelnur
|
09a0ad328f
|
HADOOP-10814. Update Tomcat version used by HttpFS and KMS to latest 6.x version. (rkanter via tucu)
(cherry picked from commit 189abddf0b68ab43978dacaf3a9bf6ee7169cf78)
|
2014-08-29 11:53:13 -07:00 |
Alejandro Abdelnur
|
eff192af69
|
HADOOP-10698. KMS, add proxyuser support. (tucu)
Conflicts:
hadoop-common-project/hadoop-common/CHANGES.txt
git-svn-id: https://svn.apache.org/repos/asf/hadoop/common/branches/branch-2@1619552 13f79535-47bb-0310-9956-ffa450edef68
|
2014-08-21 19:00:06 +00:00 |
Alejandro Abdelnur
|
4dea3e8192
|
HADOOP-10770. KMS add delegation token support. (tucu)
Conflicts:
hadoop-common-project/hadoop-common/CHANGES.txt
git-svn-id: https://svn.apache.org/repos/asf/hadoop/common/branches/branch-2@1619550 13f79535-47bb-0310-9956-ffa450edef68
|
2014-08-21 19:00:01 +00:00 |
Alejandro Abdelnur
|
6d2281b4c6
|
HADOOP-10862. Miscellaneous trivial corrections to KMS classes. (asuresh via tucu)
Conflicts:
hadoop-common-project/hadoop-common/CHANGES.txt
git-svn-id: https://svn.apache.org/repos/asf/hadoop/common/branches/branch-2@1619548 13f79535-47bb-0310-9956-ffa450edef68
|
2014-08-21 18:59:54 +00:00 |
Alejandro Abdelnur
|
bcff355417
|
HADOOP-10918. JMXJsonServlet fails when used within Tomcat. (tucu)
Conflicts:
hadoop-common-project/hadoop-common/CHANGES.txt
git-svn-id: https://svn.apache.org/repos/asf/hadoop/common/branches/branch-2@1619546 13f79535-47bb-0310-9956-ffa450edef68
|
2014-08-21 18:59:51 +00:00 |
Alejandro Abdelnur
|
05daefb1a8
|
HADOOP-10936. Change default KeyProvider bitlength to 128. (wang)
git-svn-id: https://svn.apache.org/repos/asf/hadoop/common/branches/branch-2@1619545 13f79535-47bb-0310-9956-ffa450edef68
|
2014-08-21 18:59:48 +00:00 |
Alejandro Abdelnur
|
c111c9379b
|
HADOOP-10920. site plugin couldn't parse hadoop-kms index.apt.vm. Contributed by Akira Ajisaka.
Conflicts:
hadoop-common-project/hadoop-common/CHANGES.txt
git-svn-id: https://svn.apache.org/repos/asf/hadoop/common/branches/branch-2@1619543 13f79535-47bb-0310-9956-ffa450edef68
|
2014-08-21 18:59:44 +00:00 |
Alejandro Abdelnur
|
b781c3bc88
|
HADOOP-10756. KMS audit log should consolidate successful similar requests. (asuresh via tucu)
git-svn-id: https://svn.apache.org/repos/asf/hadoop/common/branches/branch-2@1619541 13f79535-47bb-0310-9956-ffa450edef68
|
2014-08-21 18:59:41 +00:00 |
Alejandro Abdelnur
|
30fe1849c3
|
HADOOP-10881. Clarify usage of encryption and encrypted encryption key in KeyProviderCryptoExtension. (wang)
Conflicts:
hadoop-common-project/hadoop-common/CHANGES.txt
git-svn-id: https://svn.apache.org/repos/asf/hadoop/common/branches/branch-2@1619539 13f79535-47bb-0310-9956-ffa450edef68
|
2014-08-21 18:59:36 +00:00 |
Alejandro Abdelnur
|
03f9e28a7e
|
HADOOP-10720. KMS: Implement generateEncryptedKey and decryptEncryptedKey in the REST API. (asuresh via tucu)
git-svn-id: https://svn.apache.org/repos/asf/hadoop/common/branches/branch-2@1619537 13f79535-47bb-0310-9956-ffa450edef68
|
2014-08-21 18:59:32 +00:00 |
Alejandro Abdelnur
|
7f8ac5b812
|
HADOOP-10750. KMSKeyProviderCache should be in hadoop-common. (asuresh via tucu)
git-svn-id: https://svn.apache.org/repos/asf/hadoop/common/branches/branch-2@1619536 13f79535-47bb-0310-9956-ffa450edef68
|
2014-08-21 18:59:29 +00:00 |
Alejandro Abdelnur
|
0ef751797e
|
HADOOP-10824. Refactor KMSACLs to avoid locking. (Benoy Antony via umamahesh)
git-svn-id: https://svn.apache.org/repos/asf/hadoop/common/branches/branch-2@1619531 13f79535-47bb-0310-9956-ffa450edef68
|
2014-08-21 18:59:19 +00:00 |
Alejandro Abdelnur
|
edb969c3ff
|
HADOOP-10757. KeyProvider KeyVersion should provide the key name. (asuresh via tucu)
git-svn-id: https://svn.apache.org/repos/asf/hadoop/common/branches/branch-2@1619526 13f79535-47bb-0310-9956-ffa450edef68
|
2014-08-21 18:59:11 +00:00 |
Alejandro Abdelnur
|
2b3010483d
|
HADOOP-10695. KMSClientProvider should respect a configurable timeout. (yoderme via tucu)
git-svn-id: https://svn.apache.org/repos/asf/hadoop/common/branches/branch-2@1619525 13f79535-47bb-0310-9956-ffa450edef68
|
2014-08-21 18:59:09 +00:00 |
Alejandro Abdelnur
|
27b1f41455
|
HADOOP-10696. Add optional attributes to KeyProvider Options and Metadata. (tucu)
git-svn-id: https://svn.apache.org/repos/asf/hadoop/common/branches/branch-2@1619524 13f79535-47bb-0310-9956-ffa450edef68
|
2014-08-21 18:59:07 +00:00 |
Alejandro Abdelnur
|
137ecfc74f
|
HADOOP-10611. KMS, keyVersion name should not be assumed to be keyName@versionNumber. (tucu)
Conflicts:
hadoop-common-project/hadoop-common/CHANGES.txt
git-svn-id: https://svn.apache.org/repos/asf/hadoop/common/branches/branch-2@1619522 13f79535-47bb-0310-9956-ffa450edef68
|
2014-08-21 18:59:02 +00:00 |
Alejandro Abdelnur
|
2b0016ec18
|
HADOOP-10645. TestKMS fails because race condition writing acl files. (tucu)
Conflicts:
hadoop-common-project/hadoop-common/CHANGES.txt
git-svn-id: https://svn.apache.org/repos/asf/hadoop/common/branches/branch-2@1619521 13f79535-47bb-0310-9956-ffa450edef68
|
2014-08-21 18:58:59 +00:00 |
Alejandro Abdelnur
|
d637c71e4d
|
HADOOP-10433. Key Management Server based on KeyProvider API. (tucu)
Conflicts:
hadoop-common-project/hadoop-common/CHANGES.txt
hadoop-project/pom.xml
git-svn-id: https://svn.apache.org/repos/asf/hadoop/common/branches/branch-2@1619518 13f79535-47bb-0310-9956-ffa450edef68
|
2014-08-21 18:58:53 +00:00 |