Details
-
Improvement
-
Status: Resolved
-
Major
-
Resolution: Done
-
5.2.1
-
None
-
None
Description
In scope of making Oozie FIPS compliant, when TLS is enabled, the Oozie server expects a JKS KeyStore type even though the following Java system properties are being set:
-Djavax.net.ssl.keyStoreType=bcfks -Djavax.net.ssl.trustStoreType=bcfks
The goal of ticket is to make Oozie capable of setting keyStoreType and trustStoreType in oozie-site.xml if it's not already set by the user.