[ 
https://issues.apache.org/jira/browse/HDFS-1150?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=12869286#action_12869286
 ] 

Allen Wittenauer commented on HDFS-1150:
----------------------------------------

Why can't it use the 'regular Hadoop RPC'?

Altho at this point, I just don't care about this jira.  After talking with 
someone on the Yahoo! side yesterday, it is pretty clear that the solution you 
guys are building will require trusted root to all nodes to be usable.  Those 
of us that don't have such lax security in place will have to use a different 
solution anyway.

> Verify datanodes' identities to clients in secure clusters
> ----------------------------------------------------------
>
>                 Key: HDFS-1150
>                 URL: https://issues.apache.org/jira/browse/HDFS-1150
>             Project: Hadoop HDFS
>          Issue Type: New Feature
>          Components: data-node
>    Affects Versions: 0.22.0
>            Reporter: Jakob Homan
>            Assignee: Jakob Homan
>         Attachments: commons-daemon-1.0.2-src.tar.gz, 
> HDFS-1150-BF1-Y20.patch, hdfs-1150-bugfix-1.1.patch, 
> hdfs-1150-bugfix-1.2.patch, hdfs-1150-bugfix-1.patch, 
> HDFS-1150-y20.build-script.patch, HDFS-1150-Y20S-ready-5.patch, 
> HDFS-1150-Y20S-ready-6.patch, HDFS-1150-Y20S-ready-7.patch, 
> HDFS-1150-Y20S-ready-8.patch, HDFS-1150-Y20S-Rough-2.patch, 
> HDFS-1150-Y20S-Rough-3.patch, HDFS-1150-Y20S-Rough-4.patch, 
> HDFS-1150-Y20S-Rough.txt
>
>
> Currently we use block access tokens to allow datanodes to verify clients' 
> identities, however we don't have a way for clients to verify the 
> authenticity of the datanodes themselves.

-- 
This message is automatically generated by JIRA.
-
You can reply to this email to add a comment to the issue online.

Reply via email to