Uploaded image for project: 'Kudu'
  1. Kudu
  2. KUDU-1921

Add ability for clients to require authentication/encryption

    XMLWordPrintableJSON

Details

    Description

      Currently, the clients always operate in "optional" mode for authentication and encryption. This means that they are vulnerable to downgrade attacks by a MITM. We should provide APIs so that clients can be configured to prohibit downgrade when connecting to clusters they know to be secure.

      Attachments

        Activity

          People

            abukor Attila Bukor
            tlipcon Todd Lipcon
            Votes:
            0 Vote for this issue
            Watchers:
            4 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: