Subham-KRLX opened a new pull request, #53586:
URL: https://github.com/apache/airflow/pull/53586

   <!--
    Licensed to the Apache Software Foundation (ASF) under one
    or more contributor license agreements.  See the NOTICE file
    distributed with this work for additional information
    regarding copyright ownership.  The ASF licenses this file
    to you under the Apache License, Version 2.0 (the
    "License"); you may not use this file except in compliance
    with the License.  You may obtain a copy of the License at
   
      http://www.apache.org/licenses/LICENSE-2.0
   
    Unless required by applicable law or agreed to in writing,
    software distributed under the License is distributed on an
    "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
    KIND, either express or implied.  See the License for the
    specific language governing permissions and limitations
    under the License.
    -->
   
   Make Execution API SSL verification configurable for self-signed certificates
   
   This PR introduces an environment variable 
(AIRFLOW_EXECUTION_API_SSL_VERIFY) to configure SSL certificate verification 
behavior for the Execution API client. This is useful for local development, 
Docker Compose, or private deployments with self-signed or internal CA 
certificates.
   
   Allows disabling SSL verification for development and testing (not 
recommended for production)
   
   Allows specifying a custom CA bundle file
   
   Defaults to strict system CA verification if unset
   
   Usage examples:
   
   AIRFLOW_EXECUTION_API_SSL_VERIFY=false (disable – dev/test only)
   
   AIRFLOW_EXECUTION_API_SSL_VERIFY=/etc/ssl/certs/my-ca.crt (custom CA)
   
   AIRFLOW_EXECUTION_API_SSL_VERIFY=true or unset for default secure behavior
   
   This PR supersedes #53572 and addresses #53493.
   Documentation and usage instructions are updated accordingly.
   
   closes: #53493


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]

Reply via email to