[ https://issues.apache.org/jira/browse/HADOOP-9341?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=13589608#comment-13589608 ]
Hadoop QA commented on HADOOP-9341: ----------------------------------- {color:green}+1 overall{color}. Here are the results of testing the latest attachment http://issues.apache.org/jira/secure/attachment/12571415/HADOOP-9341.patch against trunk revision . {color:green}+1 @author{color}. The patch does not contain any @author tags. {color:green}+1 tests included{color}. The patch appears to include 1 new or modified test files. {color:green}+1 tests included appear to have a timeout.{color} {color:green}+1 javac{color}. The applied patch does not increase the total number of javac compiler warnings. {color:green}+1 javadoc{color}. The javadoc tool did not generate any warning messages. {color:green}+1 eclipse:eclipse{color}. The patch built with eclipse:eclipse. {color:green}+1 findbugs{color}. The patch does not introduce any new Findbugs (version 1.3.9) warnings. {color:green}+1 release audit{color}. The applied patch does not increase the total number of release audit warnings. {color:green}+1 core tests{color}. The patch passed unit tests in hadoop-common-project/hadoop-common. {color:green}+1 contrib tests{color}. The patch passed contrib unit tests. Test results: https://builds.apache.org/job/PreCommit-HADOOP-Build/2242//testReport/ Console output: https://builds.apache.org/job/PreCommit-HADOOP-Build/2242//console This message is automatically generated. > Secret Managers should allow explicit purging of tokens and secret keys > ----------------------------------------------------------------------- > > Key: HADOOP-9341 > URL: https://issues.apache.org/jira/browse/HADOOP-9341 > Project: Hadoop Common > Issue Type: New Feature > Components: security > Affects Versions: 2.0.0-alpha, 3.0.0, 0.23.7 > Reporter: Daryn Sharp > Assignee: Daryn Sharp > Priority: Critical > Attachments: HADOOP-9341.branch-23.patch, HADOOP-9341.patch > > > Per HDFS-4477, the fsimage retains all secret keys and uncanceled tokens > forever. There should be a way to explicitly purge a secret manager of > expired items w/o starting its threads. -- This message is automatically generated by JIRA. If you think it was sent incorrectly, please contact your JIRA administrators For more information on JIRA, see: http://www.atlassian.com/software/jira