Uploaded image for project: 'Kafka'
  1. Kafka
  2. KAFKA-10642

Expose the real stack trace if any exception occurred during SSL Client Trust Verification in extension

Attach filesAttach ScreenshotAdd voteVotersWatch issueWatchersCreate sub-taskLinkCloneUpdate Comment AuthorReplace String in CommentUpdate Comment VisibilityDelete Comments
    XMLWordPrintableJSON

    Details

    • Type: Bug
    • Status: In Progress
    • Priority: Minor
    • Resolution: Unresolved
    • Affects Version/s: 2.3.0, 2.4.0, 2.3.1, 2.5.0, 2.4.1, 2.6.0, 2.5.1
    • Fix Version/s: 3.0.0
    • Component/s: clients
    • Labels:
      None

      Description

      If there is any exception occurred in the custom implementation of client trust verification (i.e. using security.provider), the inner exception is suppressed or hidden and not logged to the log file...

       

      Below is an example stack trace not showing actual exception from the extension/custom implementation.

       

      [2020-05-13 14:30:26,892] ERROR [KafkaServer id=423810470] Fatal error during KafkaServer startup. Prepare to shutdown (kafka.server.KafkaServer)[2020-05-13 14:30:26,892] ERROR [KafkaServer id=423810470] Fatal error during KafkaServer startup. Prepare to shutdown (kafka.server.KafkaServer) org.apache.kafka.common.KafkaException: org.apache.kafka.common.config.ConfigException: Invalid value java.lang.RuntimeException: Delegated task threw Exception/Error for configuration A client SSLEngine created with the provided settings can't connect to a server SSLEngine created with those settings. at org.apache.kafka.common.network.SslChannelBuilder.configure(SslChannelBuilder.java:71) at org.apache.kafka.common.network.ChannelBuilders.create(ChannelBuilders.java:146) at org.apache.kafka.common.network.ChannelBuilders.serverChannelBuilder(ChannelBuilders.java:85) at kafka.network.Processor.<init>(SocketServer.scala:753) at kafka.network.SocketServer.newProcessor(SocketServer.scala:394) at kafka.network.SocketServer.$anonfun$addDataPlaneProcessors$1(SocketServer.scala:279) at scala.collection.immutable.Range.foreach$mVc$sp(Range.scala:158) at kafka.network.SocketServer.addDataPlaneProcessors(SocketServer.scala:278) at kafka.network.SocketServer.$anonfun$createDataPlaneAcceptorsAndProcessors$1(SocketServer.scala:241) at kafka.network.SocketServer.$anonfun$createDataPlaneAcceptorsAndProcessors$1$adapted(SocketServer.scala:238) at scala.collection.mutable.ResizableArray.foreach(ResizableArray.scala:62) at scala.collection.mutable.ResizableArray.foreach$(ResizableArray.scala:55) at scala.collection.mutable.ArrayBuffer.foreach(ArrayBuffer.scala:49) at kafka.network.SocketServer.createDataPlaneAcceptorsAndProcessors(SocketServer.scala:238) at kafka.network.SocketServer.startup(SocketServer.scala:121) at kafka.server.KafkaServer.startup(KafkaServer.scala:265) at kafka.server.KafkaServerStartable.startup(KafkaServerStartable.scala:44) at kafka.Kafka$.main(Kafka.scala:84) at kafka.Kafka.main(Kafka.scala)Caused by: org.apache.kafka.common.config.ConfigException: Invalid value java.lang.RuntimeException: Delegated task threw Exception/Error for configuration A client SSLEngine created with the provided settings can't connect to a server SSLEngine created with those settings. at org.apache.kafka.common.security.ssl.SslFactory.configure(SslFactory.java:100) at org.apache.kafka.common.network.SslChannelBuilder.configure(SslChannelBuilder.java:69) ... 18 more

        Attachments

          Activity

            People

            • Assignee:
              senthilm-ms Senthilnathan Muthusamy
              Reporter:
              senthilm-ms Senthilnathan Muthusamy

              Dates

              • Created:
                Updated:

                Issue deployment