[ 
https://issues.apache.org/jira/browse/HDDS-1061?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16773346#comment-16773346
 ] 

Xiaoyu Yao commented on HDDS-1061:
----------------------------------

Thanks [~ajayydv] for the update. I only have one question w.r.t. patch v3 

 

OzoneSecretManager.java

Line 207: I think we should use certClient to get the certificate based on 
theomCertSerialId from identifier instead of the certificate of the 
certClient(OM itlself). This may require overwrite verifySignature() method in 
OzoneDelegationTokenSecretManager and OzoneBlockTokenSecretManager class.

 

 

> DelegationToken: Add certificate serial  id to Ozone Delegation Token 
> Identifier
> --------------------------------------------------------------------------------
>
>                 Key: HDDS-1061
>                 URL: https://issues.apache.org/jira/browse/HDDS-1061
>             Project: Hadoop Distributed Data Store
>          Issue Type: Sub-task
>            Reporter: Ajay Kumar
>            Assignee: Ajay Kumar
>            Priority: Major
>         Attachments: HDDS-1061.00.patch, HDDS-1061.01.patch, 
> HDDS-1061.02.patch
>
>
> 1. Add certificate serial  id to Ozone Delegation Token Identifier. Required 
> for OM HA support.
> 2. Validate Ozone token based on public key from OM certificate



--
This message was sent by Atlassian JIRA
(v7.6.3#76005)

---------------------------------------------------------------------
To unsubscribe, e-mail: hdfs-issues-unsubscr...@hadoop.apache.org
For additional commands, e-mail: hdfs-issues-h...@hadoop.apache.org

Reply via email to