Uploaded image for project: 'Apache Drill'
  1. Apache Drill
  2. DRILL-7750

Drill fails to read KeyStore password from Credential provider

Attach filesAttach ScreenshotVotersWatch issueWatchersCreate sub-taskLinkCloneUpdate Comment AuthorReplace String in CommentUpdate Comment VisibilityDelete Comments
    XMLWordPrintableJSON

    Details

    • Type: Bug
    • Status: Resolved
    • Priority: Major
    • Resolution: Fixed
    • Affects Version/s: 1.17.0
    • Fix Version/s: 1.18.0
    • Component/s: None
    • Labels:
      None

      Description

      When core-site.xml has keystore or truststore specific properties along with Hadoop's CredentialProvider path, e.g.:

      <?xml version="1.0"?>
      <?xml-stylesheet type="text/xsl" href="configuration.xsl"?>
      <configuration>
      ...
      <property> 
        <name>ssl.server.truststore.location</name>
        <value>/etc/conf/ssl_truststore</value>
      </property>
      <property>
        <name>ssl.server.truststore.type</name>
        <value>jks</value>
      </property>
      <property>
        <name>ssl.server.truststore.reload.interval</name>
        <value>10000</value>
      </property>
      <property>
        <name>ssl.server.keystore.location</name>
        <value>/etc/conf/ssl_keystore</value>
      </property>
      <property>
        <name>ssl.server.keystore.type</name>
        <value>jks</value>
      </property>
      <property>
        <name>hadoop.security.credential.provider.path</name>
      <value>jceks://file/etc/conf/ssl_server.jceks</property>
      </configuration>
      

      Drill fails to start.

        Attachments

          Activity

            People

            • Assignee:
              bohdan Bohdan Kazydub
              Reporter:
              bohdan Bohdan Kazydub

              Dates

              • Created:
                Updated:
                Resolved:

                Issue deployment