steveloughran commented on pull request #2706:
URL: https://github.com/apache/hadoop/pull/2706#issuecomment-879828382


   I'm seeing 
   ```
   2021-07-14 12:54:09,519 [main] WARN  s3.AmazonS3EncryptionClientV2 
(AmazonS3EncryptionClientV2.java:warnOnLegacyCryptoMode(409)) - The S3 
Encryption Client is configured to read encrypted data with legacy encryption 
modes through the CryptoMode setting. If you don't have objects encrypted with 
these legacy modes, you should disable support for them to enhance security. 
See https://docs.aws.amazon.com/general/latest/gr/aws_sdk_cryptography.html
   2021-07-14 12:54:09,525 [main] WARN  s3.AmazonS3EncryptionClientV2 
(AmazonS3EncryptionClientV2.java:warnOnRangeGetsEnabled(401)) - The S3 
Encryption Client is configured to support range get requests. Range gets do 
not provide authenticated encryption properties even when used with an 
authenticated mode (AES-GCM). See 
https://docs.aws.amazon.com/general/latest/gr/aws_sdk_cryptography.html
   
   ```
   I'm assuming this is legit because we want those range requests. We need to 
document this in encryption.md; in troubleshooting say "yes"


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]



---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to