Thanks Randall. We didn't create a JIRA for the KIP-546 security fix since
KAFKA-7740 that introduced the regression had a fix version of 2.5.0. A fix
was applied without a JIRA to follow the security bug fix process. In the
end, it turned out that KAFKA-7740 was only in 2.6, so the bug hadn't got
into a release anyway.

Regards,

Rajini


On Sun, Jul 19, 2020 at 2:46 PM Randall Hauch <rha...@gmail.com> wrote:

> Thanks, Rajini. Is there a Jira issue for the fix related to KIP-546? If
> so, please make sure the Fix Version(s) include `2.6.0`.
>
> I'm going to start RC1 later today and hope to get it published by Monday.
> In the meantime, if anyone finds anything else in RC0, please raise it here
> -- if it's after RC1 is published then we'll just cut another RC with any
> fixes.
>
> We're down to just 5 system test failures [1], and folks are actively
> working to address them. At least some are known to be flaky, but we still
> want to get them fixed.
>
> Best regards,
>
> Randall
>
> On Sun, Jul 19, 2020 at 5:45 AM Rajini Sivaram <rajinisiva...@gmail.com>
> wrote:
>
> > Hi Randall,
> >
> > Ron found an issue with the quota implementation added under KIP-546,
> which
> > is a blocking issue for 2.6.0 since it leaks SCRAM credentials in quota
> > responses. A fix has been merged into 2.6 branch in the commit
> >
> >
> https://github.com/apache/kafka/commit/dd71437de7675d92ad3e4ed01ac3ee11bf5da99d
> > .
> > We
> > have also merged the fix for
> > https://issues.apache.org/jira/browse/KAFKA-10223 into 2.6 branch since
> it
> > causes issues for non-Java clients during reassignments.
> >
> > Regards,
> >
> > Rajini
> >
> >
> > On Wed, Jul 15, 2020 at 11:41 PM Randall Hauch <rha...@gmail.com> wrote:
> >
> > > Thanks, Levani.
> > >
> > > The content of
> > >
> > >
> >
> https://home.apache.org/~rhauch/kafka-2.6.0-rc0/kafka_2.12-2.6.0-site-docs.tgz
> > > is the correct generated site. Somehow I messed coping that to the
> > > https://github.com/apache/kafka-site/tree/asf-site/26 directory. I've
> > > corrected the latter so that
> https://kafka.apache.org/26/documentation/
> > > now
> > > exactly matches that documentation in RC0.
> > >
> > > Best regards,
> > >
> > > Randall
> > >
> > > On Wed, Jul 15, 2020 at 1:25 AM Levani Kokhreidze <
> > levani.co...@gmail.com>
> > > wrote:
> > >
> > > > Hi Randall,
> > > >
> > > > Not sure if it’s intentional but, documentation for Kafka Streams
> 2.6.0
> > > > also contains “Streams API changes in 2.7.0”
> > > > https://kafka.apache.org/26/documentation/streams/upgrade-guide <
> > > > https://kafka.apache.org/26/documentation/streams/upgrade-guide>
> > > >
> > > > Also, there seems to be some formatting issue in 2.6.0 section.
> > > >
> > > > Levani
> > > >
> > > >
> > > > > On Jul 15, 2020, at 1:48 AM, Randall Hauch <rha...@gmail.com>
> wrote:
> > > > >
> > > > > Thanks for catching that, Gary. Apologies to all for announcing
> this
> > > > before
> > > > > pushing the docs, but that's fixed and the following links are
> > working
> > > > > (along with the others in my email):
> > > > >
> > > > > * https://kafka.apache.org/26/documentation.html
> > > > > * https://kafka.apache.org/26/protocol.html
> > > > >
> > > > > Randall
> > > > >
> > > > > On Tue, Jul 14, 2020 at 4:30 PM Gary Russell <gruss...@vmware.com>
> > > > wrote:
> > > > >
> > > > >> Docs link [1] is broken.
> > > > >>
> > > > >> [1] https://kafka.apache.org/26/documentation.html
> > > > >>
> > > > >>
> > > >
> > > >
> > >
> >
>

Reply via email to