Uploaded image for project: 'Couchbase Server'
  1. Couchbase Server
  2. MB-47548

XDCR - to receive "-caFile" argument from ns_server

    XMLWordPrintable

Details

    • Task
    • Resolution: Fixed
    • Major
    • 7.1.0
    • 7.1.0
    • XDCR
    • None
    • 1

    Description

      ns_server will be passing in a "-caFile" argument in the command line for XDCR. This will be done as part of supporting node-to-node encryption per MB-47316.

      XDCR will need to implement an in-memory cache to store this certificate file.
      In addition, XDCR needs to hook up (either using GSI library or our own) with cbauth to observe if TLS config has changed, and re-load the CA File.

      The cache will need an API to be able to let XDCR peer-to-peer framework to use and establish TLS connection.

      Attachments

        Issue Links

          For Gerrit Dashboard: MB-47548
          # Subject Branch Project Status CR V

          Activity

            People

              pavithra.mahamani Pavithra Mahamani (Inactive)
              neil.huang Neil Huang
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved:

                Gerrit Reviews

                  There are no open Gerrit changes

                  PagerDuty