Ivan Andika created HDDS-16670:
----------------------------------

             Summary: Support S3 secure follower read 
                 Key: HDDS-16670
                 URL: https://issues.apache.org/jira/browse/HDDS-16670
             Project: Apache Ozone
          Issue Type: Sub-task
            Reporter: Ivan Andika


At the current state, secure S3 reads cannot use the follower read feature.

S3SecurityUtil#validateS3Credential requires that the current OM is a leader. 
The documented reason is that follower can be arbitrarily behind the leader and 
therefore might not see the token or the revocation. Due to this reason, 
currently OM follower read is not supported for secure S3 reads.

We can think on how to support it. For follower linearizable read, we can 
probably allow it since the ReadIndex mechanism ensure linearizability and the 
follower will not return until it's caught up to the ReadIndex. However, for 
local lease, it might be a bit tricky since it doesn't guarantee 
linearizability.



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to