Details
-
Improvement
-
Status: Resolved
-
Major
-
Resolution: Fixed
-
None
-
None
-
None
Description
Kafka currently doesn't allow dynamic reloading of keystores when the new key has a different DN or removes some of the SANs. While it might help to prevent users from breaking their cluster, in some cases it would be great to be able to bypass this validation when desired.
More details are in the KIP-978: Allow dynamic reloading of certificates with different DN / SANs
Attachments
Issue Links
- mentioned in
-
Page Loading...