[
https://issues.apache.org/jira/browse/IMPALA-15249?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Jiyoung Yoo resolved IMPALA-15249.
----------------------------------
Resolution: Fixed
> Update test certificates to use serverAuth EKU only
> ---------------------------------------------------
>
> Key: IMPALA-15249
> URL: https://issues.apache.org/jira/browse/IMPALA-15249
> Project: IMPALA
> Issue Type: Test
> Components: Security
> Reporter: Jiyoung Yoo
> Assignee: Jiyoung Yoo
> Priority: Minor
>
> Current test scripts in Impala use test certificates with dual Extended Key
> Usage (EKU) extensions (combining both serverAuth and clientAuth).
> Industry standards and public CAs (like DigiCert) are sunsetting multi-use
> certificates.
> To align Impala's tests with real-world PKI practices, test certificates
> should use serverAuth EKU rather than dual EKU.
>
--
This message was sent by Atlassian Jira
(v8.20.10#820010)