Jiyoung Yoo created IMPALA-15249:
------------------------------------

             Summary: Update test certificates to use serverAuth EKU only
                 Key: IMPALA-15249
                 URL: https://issues.apache.org/jira/browse/IMPALA-15249
             Project: IMPALA
          Issue Type: Test
          Components: Security
            Reporter: Jiyoung Yoo
            Assignee: Jiyoung Yoo


Current test scripts in Impala use test certificates with dual Extended Key 
Usage (EKU) extensions (combining both serverAuth and clientAuth).

Industry standards and public CAs (like DigiCert) are sunsetting multi-use 
certificates. 

To align Impala's tests with real-world PKI practices, test certificates should 
use serverAuth EKU rather than dual EKU.

 



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

Reply via email to