Uploaded image for project: 'Cassandra'
  1. Cassandra
  2. CASSANDRA-9972

Make node tool command take a password file (2.0.x)

Agile BoardAttach filesAttach ScreenshotBulk Copy AttachmentsBulk Move AttachmentsVotersWatch issueWatchersCreate sub-taskConvert to sub-taskMoveLinkCloneLabelsUpdate Comment AuthorReplace String in CommentUpdate Comment VisibilityDelete Comments
    XMLWordPrintableJSON

Details

    • Improvement
    • Status: Resolved
    • Low
    • Resolution: Won't Fix
    • None
    • None

    Description

      We are sending the jmx password in the clear to the node tool command in production. This is a security risk. Any one doing a 'ps' can see the clear password. Can we change the node tool command to also take a password file argument. This file will list the JMX user and passwords. Example below:

      cat /cassandra/run/10003004.jmxpasswd
      monitorRole abc
      controlRole def

      Based on the user name provided, node tool can pick up the right password.

      Attachments

        Issue Links

        Activity

          This comment will be Viewable by All Users Viewable by All Users
          Cancel

          People

            clardeur Clément Lardeur Assign to me
            saprykin Dmitrii Saprykin
            Clément Lardeur
            Sankalp Kohli
            Votes:
            0 Vote for this issue
            Watchers:
            3 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved:

              Slack

                Issue deployment