+1 (non-binding)
* Signature: ok
* Checksum : ok
* Rat check (1.8.0_292): ok
- mvn clean apache-rat:check
* Built from source (1.8.0_292): ok
- mvn clean install -DskipTests
* Unit tests pass (1.8.0_292): ok
- mvn package -Dsurefire.rerunFailingTestsCount=3
* confirmed log4j2 2.17.0 is part of the dependency tree
-Stephen
On Sun, Dec 19, 2021 at 10:15 PM Guangxu Cheng <[email protected]> wrote:
> Please vote on this Apache hbase operator tools release candidate,
> hbase-operator-tools-1.2.0RC1
>
> The VOTE will remain open for at least 72 hours.
>
> [ ] +1 Release this package as Apache hbase operator tools 1.2.0
> [ ] -1 Do not release this package because ...
>
> The tag to be voted on is 1.2.0RC1:
>
> https://github.com/apache/hbase-operator-tools/tree/1.2.0RC1
>
> This tag currently points to git reference
>
> 478af00af79f82624264fd2bb447b97fecc8e790
>
> The release files, including signatures, digests, as well as CHANGES.md
> and RELEASENOTES.md included in this RC can be found at:
>
>
> https://dist.apache.org/repos/dist/dev/hbase/hbase-operator-tools-1.2.0RC1
>
> Maven artifacts are available in a staging repository at:
>
> https://repository.apache.org/content/repositories/org apache hbase-1479
> <https://repository.apache.org/content/repositories/orgapachehbase-1479>
> Artifacts were signed with the 5EF3A66D57EC647A key which can be found in:
>
> https://downloads.apache.org/hbase/KEYS
>
> hbase-operator-tools 1.2.0 contains a critical security fix for addressing
> the log4j2
> CVE-2021-44228 and CVE-2021-45105. All users who use hbase-operator-tools
> should upgrade to hbase-operator-tools 1.2.0 ASAP.
>
> To learn more about Apache hbase operator tools, please see
>
> http://hbase.apache.org/
>
> Thanks,
> Your HBase Release Manager
> ------
> Best Regards,
> Guangxu
>