Jiyoung Yoo created IMPALA-15249:
------------------------------------
Summary: Update test certificates to use serverAuth EKU only
Key: IMPALA-15249
URL: https://issues.apache.org/jira/browse/IMPALA-15249
Project: IMPALA
Issue Type: Test
Components: Security
Reporter: Jiyoung Yoo
Assignee: Jiyoung Yoo
Current test scripts in Impala use test certificates with dual Extended Key
Usage (EKU) extensions (combining both serverAuth and clientAuth).
Industry standards and public CAs (like DigiCert) are sunsetting multi-use
certificates.
To align Impala's tests with real-world PKI practices, test certificates should
use serverAuth EKU rather than dual EKU.
--
This message was sent by Atlassian Jira
(v8.20.10#820010)