[ 
https://issues.apache.org/jira/browse/CASSANDRA-18034?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
 ]

Yifan Cai updated CASSANDRA-18034:
----------------------------------
          Fix Version/s: 4.1
    Source Control Link: 
https://github.com/apache/cassandra/commit/36e16ee3c911c710129fcf3a69595038c3dbd385
             Resolution: Fixed
                 Status: Resolved  (was: Ready to Commit)

Merged into trunk as 
[36e16ee3c9|https://github.com/apache/cassandra/commit/36e16ee3c911c710129fcf3a69595038c3dbd385]

> Adding endpoint verification option to client_encryption_options
> ----------------------------------------------------------------
>
>                 Key: CASSANDRA-18034
>                 URL: https://issues.apache.org/jira/browse/CASSANDRA-18034
>             Project: Cassandra
>          Issue Type: New Feature
>          Components: Messaging/Client
>            Reporter: Jyothsna Konisa
>            Assignee: Jyothsna Konisa
>            Priority: Normal
>             Fix For: 4.1
>
>          Time Spent: 20m
>  Remaining Estimate: 0h
>
> Add a new property `client_encryption_options.require_endpoint_verification` 
> in cassandra.yaml to enable endpoint verification on client connections 
> optionally. When this property is set to true, the IP/hostname of the client 
> is verified against the IP/hostname that is present in the SAN of the client 
> certificates. This would help in preventing clients stealing certificates 
> from the hosts and using them while connecting to cassandra.



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to