Uploaded image for project: 'Hadoop Common'
  1. Hadoop Common
  2. HADOOP-10880

Move HTTP delegation tokens out of URL querystring to a header

VotersWatch issueWatchersCreate sub-taskLinkCloneUpdate Comment AuthorReplace String in CommentUpdate Comment VisibilityDelete Comments
    XMLWordPrintableJSON

Details

    • Bug
    • Status: Closed
    • Blocker
    • Resolution: Fixed
    • 2.4.1
    • 2.6.0
    • security
    • None
    • Reviewed

    Description

      Following up on a discussion in HADOOP-10799.

      Because URLs are often logged, delegation tokens may end up in LOG files while they are still valid.

      We should move the tokens to a header.

      We should still support tokens in the querystring for backwards compatibility.

      Attachments

        1. HADOOP-10880.patch
          16 kB
          Alejandro Abdelnur
        2. HADOOP-10880.patch
          16 kB
          Alejandro Abdelnur
        3. HADOOP-10880.patch
          16 kB
          Alejandro Abdelnur
        4. HADOOP-10880.patch
          16 kB
          Alejandro Abdelnur
        5. HADOOP-10880.patch
          16 kB
          Alejandro Abdelnur

        Issue Links

        Activity

          This comment will be Viewable by All Users Viewable by All Users
          Cancel

          People

            tucu00 Alejandro Abdelnur
            tucu00 Alejandro Abdelnur
            Votes:
            0 Vote for this issue
            Watchers:
            7 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved:

              Slack

                Issue deployment