Uploaded image for project: 'Cassandra'
  1. Cassandra
  2. CASSANDRA-6660

Make node tool command take a password file

    XMLWordPrintableJSON

Details

    • Improvement
    • Status: Resolved
    • Low
    • Resolution: Fixed
    • 2.1 beta1
    • None

    Description

      We are sending the jmx password in the clear to the node tool command in production. This is a security risk. Any one doing a 'ps' can see the clear password. Can we change the node tool command to also take a password file argument. This file will list the JMX user and passwords. Example below:

      cat /cassandra/run/10003004.jmxpasswd
      monitorRole abc
      controlRole def

      Based on the user name provided, node tool can pick up the right password.

      Attachments

        1. cassandra-2.0-6660.patch
          3 kB
          Dmitrii Saprykin
        2. trunk-6660-v3.patch
          3 kB
          Clément Lardeur
        3. trunk-6660-v2.patch
          3 kB
          Clément Lardeur
        4. trunk-6660-v1.patch
          2 kB
          Clément Lardeur

        Issue Links

          Activity

            People

              clardeur Clément Lardeur
              vkasar Vishy Kasar
              Clément Lardeur
              Sankalp Kohli
              Votes:
              0 Vote for this issue
              Watchers:
              7 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: