[ 
https://issues.apache.org/jira/browse/HADOOP-10394?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
 ]

Arpit Agarwal updated HADOOP-10394:
-----------------------------------

    Attachment: HADOOP-10394.02.patch

Thanks Haohui, updated patch attached.

Haohui explained offline that weakening the assert does not weaken the security 
check.

{quote}
Even the cookie does not expire as expected, the token (which is validated on 
the server side) will expire anyway. The security of the system does not depend 
on whether the cookie has expired or not.
{quote}

> TestAuthenticationFilter is flaky
> ---------------------------------
>
>                 Key: HADOOP-10394
>                 URL: https://issues.apache.org/jira/browse/HADOOP-10394
>             Project: Hadoop Common
>          Issue Type: Bug
>          Components: test
>    Affects Versions: 2.3.0
>            Reporter: Arpit Agarwal
>            Assignee: Arpit Agarwal
>         Attachments: HADOOP-10394.01.patch, HADOOP-10394.02.patch
>
>
> We have seen this assert cause occasional failures on Ubuntu.
> {code}
>         Assert.assertEquals(System.currentTimeMillis() + 1000 * 1000,
>                      token.getExpires(), 100);
> {code}
> The expected fudge is up to 100ms, we have seen up to ~110ms in practice.



--
This message was sent by Atlassian JIRA
(v6.2#6252)

Reply via email to