zakariya-s opened a new pull request, #2932:
URL: https://github.com/apache/iceberg-rust/pull/2932
## Which issue does this PR close?
<!--
We generally require a GitHub issue to be filed for all bug fixes and
enhancements and this helps us generate change logs for our releases. You can
link an issue to this PR using the GitHub syntax. For example `Closes #123`
indicates that this PR will close issue #123.
-->
- Closes #2931.
## What changes are included in this PR?
<!--
Provide a summary of the modifications in this PR. List the main changes
such as new features, bug fixes, refactoring, or any other updates.
-->
This PR adds support for refreshing short-lived storage credentials vended
by REST catalogs:
- Adds a backend-independent `StorageCredentialProvider` interface to
`FileIO`
- Implements a REST credential provider for AWS S3 and GCS refresh
endpoints
- Uses table-scoped tokens and `header.*` properties for refresh requests
- Caches credentials independently by cloud and selects credentials using
the longest matching storage prefix
- Adds jittered failure backoff while a cached credential remains valid
- Adapts refreshed credentials into the OpenDAL/reqsign S3 and GCS
credential providers
- Redacts credential-bearing configuration from `Debug` output
Azure credential refresh is not included because the current OpenDAL Azure
backend does not expose the credential-provider and expiry hooks required for
safe refresh.
## Are these changes tested?
<!--
Specify what test covers (unit test, integration test, etc.).
If tests are not included in your PR, please explain why (for example, are
they covered by existing tests)?
-->
Yes
--
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.
To unsubscribe, e-mail: [email protected]
For queries about this service, please contact Infrastructure at:
[email protected]
---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]