[
https://issues.apache.org/jira/browse/CASSANDRA-10404?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16208615#comment-16208615
]
Kurt Greaves commented on CASSANDRA-10404:
------------------------------------------
bq. 4) If we want to avoid potential attacks with invalid or stolen
certificates, we should also enable require_client_auth by default. This should
not cause any issues, as the truststores need to be managed for outgoing
connections anyways. So why not validate incoming connections as well?
bq. I think it is rather common that clusters are using certificates that don't
validate well. So changing the default value could generate some unpleasant
surprises.
This is true. We shouldn't go changing this default. Enabling it also assumes
users have keys signed by their CA for all their clients, which definitely
won't be the case.
> Node to Node encryption transitional mode
> -----------------------------------------
>
> Key: CASSANDRA-10404
> URL: https://issues.apache.org/jira/browse/CASSANDRA-10404
> Project: Cassandra
> Issue Type: New Feature
> Reporter: Tom Lewis
> Assignee: Jason Brown
> Fix For: 4.x
>
>
> Create a transitional mode for encryption that allows encrypted and
> unencrypted traffic node-to-node during a change over to encryption from
> unencrypted. This alleviates downtime during the switch.
> This is similar to CASSANDRA-10559 which is intended for client-to-node
--
This message was sent by Atlassian JIRA
(v6.4.14#64029)
---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]