Apache9 commented on PR #4716:
URL: https://github.com/apache/hbase/pull/4716#issuecomment-1285376347

   > I've not attempted release candidates anytime recently, so the status here 
is not changed. There's a couple reviewer questions about the wisdom of 
exposing the socket with elevated privileges. The changes here that allowed me 
to proceed may not make sense for other environments. For example, if someone 
is building an RC on a 3PC, they may not want the full privileged socket 
exposed to the remote environment. However, I don't know if any of our release 
managers are building on "untrusted" hardware.
   
   I think we could introduce a flag to control the behavior? i.e, mounting 
agent-socket or agent-extra-socket, and we could still make the default to 
mount agent-extra-socket, which is the same with the current behavior.
   
   Anyway, if this is not to be landed in the new future, I will try to land 
other improvements first.
   
   Thanks @ndimiduk !


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: issues-unsubscr...@hbase.apache.org

For queries about this service, please contact Infrastructure at:
us...@infra.apache.org

Reply via email to