[jira] [Work logged] (KNOX-2772) add configuration for jetty renegotiation

2022-07-21 Thread ASF GitHub Bot (Jira)
[ https://issues.apache.org/jira/browse/KNOX-2772?focusedWorklogId=793826=com.atlassian.jira.plugin.system.issuetabpanels:worklog-tabpanel#worklog-793826 ] ASF GitHub Bot logged work on KNOX-2772: Author: ASF GitHub Bot

[GitHub] [knox] nanhuirong commented on pull request #605: KNOX-2772 - add configuration for jetty renegotiation

2022-07-21 Thread GitBox
nanhuirong commented on PR #605: URL: https://github.com/apache/knox/pull/605#issuecomment-1191705256 > Disabling renegotiation is the more secure mode and I would expect that to actually be the default. Renegotiation had an attack vector a while ago whereby a middle man could renegotiate

[jira] [Work logged] (KNOX-2772) add configuration for jetty renegotiation

2022-07-21 Thread ASF GitHub Bot (Jira)
[ https://issues.apache.org/jira/browse/KNOX-2772?focusedWorklogId=793817=com.atlassian.jira.plugin.system.issuetabpanels:worklog-tabpanel#worklog-793817 ] ASF GitHub Bot logged work on KNOX-2772: Author: ASF GitHub Bot

[jira] [Work logged] (KNOX-2772) add configuration for jetty renegotiation

2022-07-21 Thread ASF GitHub Bot (Jira)
[ https://issues.apache.org/jira/browse/KNOX-2772?focusedWorklogId=793815=com.atlassian.jira.plugin.system.issuetabpanels:worklog-tabpanel#worklog-793815 ] ASF GitHub Bot logged work on KNOX-2772: Author: ASF GitHub Bot

[GitHub] [knox] nanhuirong commented on pull request #605: KNOX-2772 - add configuration for jetty renegotiation

2022-07-21 Thread GitBox
nanhuirong commented on PR #605: URL: https://github.com/apache/knox/pull/605#issuecomment-1191666828 > Disabling renegotiation is the more secure mode and I would expect that to actually be the default. Renegotiation had an attack vector a while ago whereby a middle man could renegotiate

[jira] [Work logged] (KNOX-2772) add configuration for jetty renegotiation

2022-07-21 Thread ASF GitHub Bot (Jira)
[ https://issues.apache.org/jira/browse/KNOX-2772?focusedWorklogId=793813=com.atlassian.jira.plugin.system.issuetabpanels:worklog-tabpanel#worklog-793813 ] ASF GitHub Bot logged work on KNOX-2772: Author: ASF GitHub Bot

[jira] [Work logged] (KNOX-2772) add configuration for jetty renegotiation

2022-07-21 Thread ASF GitHub Bot (Jira)
[ https://issues.apache.org/jira/browse/KNOX-2772?focusedWorklogId=793814=com.atlassian.jira.plugin.system.issuetabpanels:worklog-tabpanel#worklog-793814 ] ASF GitHub Bot logged work on KNOX-2772: Author: ASF GitHub Bot

[GitHub] [knox] nanhuirong commented on pull request #605: KNOX-2772 - add configuration for jetty renegotiation

2022-07-21 Thread GitBox
nanhuirong commented on PR #605: URL: https://github.com/apache/knox/pull/605#issuecomment-1191664101 > Disabling renegotiation is the more secure mode and I would expect that to actually be the default. Renegotiation had an attack vector a while ago whereby a middle man could renegotiate

[GitHub] [knox] nanhuirong closed pull request #605: KNOX-2772 - add configuration for jetty renegotiation

2022-07-21 Thread GitBox
nanhuirong closed pull request #605: KNOX-2772 - add configuration for jetty renegotiation URL: https://github.com/apache/knox/pull/605 -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific

[jira] [Commented] (KNOX-2772) add configuration for jetty renegotiation

2022-07-21 Thread nanhuirong (Jira)
[ https://issues.apache.org/jira/browse/KNOX-2772?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=17569488#comment-17569488 ] nanhuirong commented on KNOX-2772: -- Hi All, The build for arm always report "no space left on device".

[GitHub] [knox] lmccay commented on pull request #605: KNOX-2772 - add configuration for jetty renegotiation

2022-07-21 Thread GitBox
lmccay commented on PR #605: URL: https://github.com/apache/knox/pull/605#issuecomment-1191651929 Disabling renegotiation is the more secure mode and I would expect that to actually be the default. Renegotiation had an attack vector a while ago whereby a middle man could renegotiate to a

[jira] [Work logged] (KNOX-2772) add configuration for jetty renegotiation

2022-07-21 Thread ASF GitHub Bot (Jira)
[ https://issues.apache.org/jira/browse/KNOX-2772?focusedWorklogId=793809=com.atlassian.jira.plugin.system.issuetabpanels:worklog-tabpanel#worklog-793809 ] ASF GitHub Bot logged work on KNOX-2772: Author: ASF GitHub Bot

[jira] [Work logged] (KNOX-2772) add configuration for jetty renegotiation

2022-07-21 Thread ASF GitHub Bot (Jira)
[ https://issues.apache.org/jira/browse/KNOX-2772?focusedWorklogId=793765=com.atlassian.jira.plugin.system.issuetabpanels:worklog-tabpanel#worklog-793765 ] ASF GitHub Bot logged work on KNOX-2772: Author: ASF GitHub Bot

[GitHub] [knox] nanhuirong commented on pull request #605: KNOX-2772 - add configuration for jetty renegotiation

2022-07-21 Thread GitBox
nanhuirong commented on PR #605: URL: https://github.com/apache/knox/pull/605#issuecomment-1191546578 > > >

[jira] [Work logged] (KNOX-2772) add configuration for jetty renegotiation

2022-07-21 Thread ASF GitHub Bot (Jira)
[ https://issues.apache.org/jira/browse/KNOX-2772?focusedWorklogId=793756=com.atlassian.jira.plugin.system.issuetabpanels:worklog-tabpanel#worklog-793756 ] ASF GitHub Bot logged work on KNOX-2772: Author: ASF GitHub Bot

[GitHub] [knox] smolnar82 commented on pull request #605: KNOX-2772 - add configuration for jetty renegotiation

2022-07-21 Thread GitBox
smolnar82 commented on PR #605: URL: https://github.com/apache/knox/pull/605#issuecomment-1191524455 > >

[jira] [Work logged] (KNOX-2772) add configuration for jetty renegotiation

2022-07-21 Thread ASF GitHub Bot (Jira)
[ https://issues.apache.org/jira/browse/KNOX-2772?focusedWorklogId=793752=com.atlassian.jira.plugin.system.issuetabpanels:worklog-tabpanel#worklog-793752 ] ASF GitHub Bot logged work on KNOX-2772: Author: ASF GitHub Bot

[GitHub] [knox] nanhuirong commented on pull request #605: KNOX-2772 - add configuration for jetty renegotiation

2022-07-21 Thread GitBox
nanhuirong commented on PR #605: URL: https://github.com/apache/knox/pull/605#issuecomment-1191514048 > https://www.eclipse.org/jetty/javadoc/jetty-9/org/eclipse/jetty/util/annotation/ManagedAttribute.html)("Whether renegotiation is allowed" In our scenario,we should provide better

[jira] [Work logged] (KNOX-2772) add configuration for jetty renegotiation

2022-07-21 Thread ASF GitHub Bot (Jira)
[ https://issues.apache.org/jira/browse/KNOX-2772?focusedWorklogId=793720=com.atlassian.jira.plugin.system.issuetabpanels:worklog-tabpanel#worklog-793720 ] ASF GitHub Bot logged work on KNOX-2772: Author: ASF GitHub Bot

[GitHub] [knox] smolnar82 commented on pull request #605: KNOX-2772 - add configuration for jetty renegotiation

2022-07-21 Thread GitBox
smolnar82 commented on PR #605: URL: https://github.com/apache/knox/pull/605#issuecomment-1191449534 Thanks for the new patchset, @nanhuirong ! I've just checked [Jetty's

[jira] [Commented] (KNOX-2779) support multiple hosts for gateway.host config

2022-07-21 Thread nanhuirong (Jira)
[ https://issues.apache.org/jira/browse/KNOX-2779?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=17569400#comment-17569400 ] nanhuirong commented on KNOX-2779: -- Hi Larry McCay, Sure, this is good news for me. We have using this

[jira] [Commented] (KNOX-2772) add configuration for jetty renegotiation

2022-07-21 Thread nanhuirong (Jira)
[ https://issues.apache.org/jira/browse/KNOX-2772?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=17569398#comment-17569398 ] nanhuirong commented on KNOX-2772: -- Hi All,   I have upload a new pathset. Thanks! > add configuration

[jira] [Updated] (KNOX-2713) Improve user limit handling when fetching Knox Tokens

2022-07-21 Thread Sandor Molnar (Jira)
[ https://issues.apache.org/jira/browse/KNOX-2713?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Sandor Molnar updated KNOX-2713: Description: The current user limit behavior, which returns an error in case the user is trying to

[jira] [Commented] (KNOX-2782) Knox CLI user-auth-test command failure

2022-07-21 Thread ASF subversion and git services (Jira)
[ https://issues.apache.org/jira/browse/KNOX-2782?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=17569341#comment-17569341 ] ASF subversion and git services commented on KNOX-2782: --- Commit

[jira] [Work logged] (KNOX-2782) Knox CLI user-auth-test command failure

2022-07-21 Thread ASF GitHub Bot (Jira)
[ https://issues.apache.org/jira/browse/KNOX-2782?focusedWorklogId=793663=com.atlassian.jira.plugin.system.issuetabpanels:worklog-tabpanel#worklog-793663 ] ASF GitHub Bot logged work on KNOX-2782: Author: ASF GitHub Bot

[jira] [Updated] (KNOX-2782) Knox CLI user-auth-test command failure

2022-07-21 Thread Sandor Molnar (Jira)
[ https://issues.apache.org/jira/browse/KNOX-2782?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Sandor Molnar updated KNOX-2782: Resolution: Fixed Status: Resolved (was: Patch Available) > Knox CLI user-auth-test

[GitHub] [knox] smolnar82 merged pull request #610: KNOX-2782 - Enhanced Shiro config with the object class of invalidRequest

2022-07-21 Thread GitBox
smolnar82 merged PR #610: URL: https://github.com/apache/knox/pull/610 -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. To unsubscribe, e-mail: dev-unsubscr...@knox.apache.org

[jira] [Work logged] (KNOX-2777) Implement concurrent session verifier

2022-07-21 Thread ASF GitHub Bot (Jira)
[ https://issues.apache.org/jira/browse/KNOX-2777?focusedWorklogId=793657=com.atlassian.jira.plugin.system.issuetabpanels:worklog-tabpanel#worklog-793657 ] ASF GitHub Bot logged work on KNOX-2777: Author: ASF GitHub Bot

[GitHub] [knox] smolnar82 commented on a diff in pull request #608: KNOX-2777 - Add configurations for concurrent session verifier feature

2022-07-21 Thread GitBox
smolnar82 commented on code in PR #608: URL: https://github.com/apache/knox/pull/608#discussion_r926499605 ## gateway-spi-common/src/main/java/org/apache/knox/gateway/session/control/ConcurrentSessionVerifier.java: ## @@ -0,0 +1,102 @@ +/* + * Licensed to the Apache Software

[jira] [Work logged] (KNOX-2777) Implement concurrent session verifier

2022-07-21 Thread ASF GitHub Bot (Jira)
[ https://issues.apache.org/jira/browse/KNOX-2777?focusedWorklogId=793638=com.atlassian.jira.plugin.system.issuetabpanels:worklog-tabpanel#worklog-793638 ] ASF GitHub Bot logged work on KNOX-2777: Author: ASF GitHub Bot

[GitHub] [knox] zeroflag commented on a diff in pull request #608: KNOX-2777 - Add configurations for concurrent session verifier feature

2022-07-21 Thread GitBox
zeroflag commented on code in PR #608: URL: https://github.com/apache/knox/pull/608#discussion_r926475787 ## gateway-spi-common/src/main/java/org/apache/knox/gateway/session/control/ConcurrentSessionVerifier.java: ## @@ -0,0 +1,102 @@ +/* + * Licensed to the Apache Software

[jira] [Updated] (KNOX-2770) KnoxToken doAs won't work with HadoopAuth filter

2022-07-21 Thread Sandor Molnar (Jira)
[ https://issues.apache.org/jira/browse/KNOX-2770?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Sandor Molnar updated KNOX-2770: Description: *Steps to reproduce* * create a topology with Knox's HadoopAuth filter as the

[jira] [Updated] (KNOX-2770) KnoxToken doAs won't work with HadoopAuth filter

2022-07-21 Thread Sandor Molnar (Jira)
[ https://issues.apache.org/jira/browse/KNOX-2770?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Sandor Molnar updated KNOX-2770: Description: *Steps to reproduce* * create a topology with Knox's HadoopAuth filter as the

[jira] [Updated] (KNOX-2714) Adding doAs support for KnoxToken service

2022-07-21 Thread Sandor Molnar (Jira)
[ https://issues.apache.org/jira/browse/KNOX-2714?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Sandor Molnar updated KNOX-2714: Description: As of now, authenticated users are allowed to acquire a Knox token for themselves

[jira] [Updated] (KNOX-2714) Adding doAs support for KnoxToken service

2022-07-21 Thread Sandor Molnar (Jira)
[ https://issues.apache.org/jira/browse/KNOX-2714?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Sandor Molnar updated KNOX-2714: Description: As of now, authenticated users are allowed to acquire a Knox token for themselves