Subham-KRLX opened a new pull request, #53586:
URL: https://github.com/apache/airflow/pull/53586
<!--
Licensed to the Apache Software Foundation (ASF) under one
or more contributor license agreements. See the NOTICE file
distributed with this work for additional information
regarding copyright ownership. The ASF licenses this file
to you under the Apache License, Version 2.0 (the
"License"); you may not use this file except in compliance
with the License. You may obtain a copy of the License at
http://www.apache.org/licenses/LICENSE-2.0
Unless required by applicable law or agreed to in writing,
software distributed under the License is distributed on an
"AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
KIND, either express or implied. See the License for the
specific language governing permissions and limitations
under the License.
-->
Make Execution API SSL verification configurable for self-signed certificates
This PR introduces an environment variable
(AIRFLOW_EXECUTION_API_SSL_VERIFY) to configure SSL certificate verification
behavior for the Execution API client. This is useful for local development,
Docker Compose, or private deployments with self-signed or internal CA
certificates.
Allows disabling SSL verification for development and testing (not
recommended for production)
Allows specifying a custom CA bundle file
Defaults to strict system CA verification if unset
Usage examples:
AIRFLOW_EXECUTION_API_SSL_VERIFY=false (disable – dev/test only)
AIRFLOW_EXECUTION_API_SSL_VERIFY=/etc/ssl/certs/my-ca.crt (custom CA)
AIRFLOW_EXECUTION_API_SSL_VERIFY=true or unset for default secure behavior
This PR supersedes #53572 and addresses #53493.
Documentation and usage instructions are updated accordingly.
closes: #53493
--
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.
To unsubscribe, e-mail: [email protected]
For queries about this service, please contact Infrastructure at:
[email protected]