[ 
https://issues.apache.org/jira/browse/HDDS-8132?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17699722#comment-17699722
 ] 

Ritesh Shukla commented on HDDS-8132:
-------------------------------------

[~Myskov] https://issues.apache.org/jira/browse/HDDS-7814 is related to the 
work you are doing. It would be good to collaborate and see if the work can be 
co-ordinated. We could start a feature branch. Are you'll both on the Apache 
Slack? cc [~Sammi] [~erose] 

> Secure S3 keys management
> -------------------------
>
>                 Key: HDDS-8132
>                 URL: https://issues.apache.org/jira/browse/HDDS-8132
>             Project: Apache Ozone
>          Issue Type: Improvement
>            Reporter: Maksim Myskov
>            Assignee: Maksim Myskov
>            Priority: Major
>              Labels: pull-request-available
>         Attachments: Secure S3 keys management.pdf
>
>
> While attempting to get Ozone to production, we found several security flaws 
> regarding S3 auth.
> Some of them we have already done (HDDS-7191, HDDS-7815), some of them are in 
> progress (HDDS-8050,HDDS-7814), and some are to be implemented.
> This Jira has several purposes:
>  # To be an umbrella Jira for work regarding improving S3 security
>  # To share our vision regarding S3 security
> I attached a design document that describes all the security flaws we have 
> found. Eliminating them will drastically increase Ozone S3 security.



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

---------------------------------------------------------------------
To unsubscribe, e-mail: issues-unsubscr...@ozone.apache.org
For additional commands, e-mail: issues-h...@ozone.apache.org

Reply via email to