Report for shallow review of zookeeper:
 * /usr/bin/zooinspector does not have a man page
 * upstart job looks fine, and zookeeperd runs as non-root
 * There are no dbus services, sudoers fragments or setuid binaries
 * test suite is enabled in the build
 * build logs do have some warnings. See with "egrep -i '(error|warning):' 
<buildlog>". Notably:
  * [javac] PerChannelBookieClient.java:44: warning: [deprecation] 
org.jboss.netty.channel.ChannelPipelineCoverage in org.jboss.netty.channel has 
been deprecated
  * [javac] PerChannelBookieClient.java:62: warning: [deprecation] 
org.jboss.netty.channel.ChannelPipelineCoverage in org.jboss.netty.channel has 
been deprecated
 * looking at the code and spot checking here and there, memory, string 
operations, et al seem fine
 * zkfuse.cc had some interesting stuff and could be problematic, but we don't 
ship it
 * ./src/contrib/bookkeeper/src/java/org/apache/bookkeeper/bookie/Bookie.java: 
predictable file name in a world writable directory. This should be checked 
out. Shouldn't be an issue with yama

While ACLs are supported and various forms of authentication come built
in (eg ip and digest authentication, with kerberos authentication is in
3.4 (not in precise yet)), one thing this is a bit disappointing (which
is all too common) is the lack of native SSL support. Upstream says
network security is the answer to this (ie, firewalls, security groups,
etc), and also suggested stunnel: http://www.mail-archive.com/zookeeper-
u...@hadoop.apache.org/msg00588.html. It would be good if the
documentation or prominent man page made this clear.

Based on my review and an active upstream, ACK with suggested
documentation change.

** Changed in: zookeeper (Ubuntu)
       Status: New => In Progress

** Changed in: zookeeper (Ubuntu)
     Assignee: Jamie Strandboge (jdstrand) => Clint Byrum (clint-fewbar)

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to netty in Ubuntu.
https://bugs.launchpad.net/bugs/913883

Title:
  [MIR] zookeeper, netty, log4cxx

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/log4cxx/+bug/913883/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs

Reply via email to