Description
With changes due to MB-48377, it assumes that the cbauth.CFG_CHANGE_CLUSTER_ENCRYPTION (2) happens before cbauth.CFG_CHANGE_CERTS_TLSCONFIG (1), but this assumption is incorrect, as evident from logs:
2021-09-28T14:26:24.965-07:00 INFO GOXDCR.SecuritySvc: Received security change notification. code 1
|
2021-09-28T14:28:04.593-07:00 INFO GOXDCR.SecuritySvc: Received security change notification. code 2
|
As a result, the security service will not store a certificate correctly and it'll return empty data back to consumers that ask for it.
Attachments
Issue Links
- is triggered by
-
MB-48377 simple-test failure in xdcrnewbasetests.py
- Resolved
For Gerrit Dashboard: MB-48648 | ||||||
---|---|---|---|---|---|---|
# | Subject | Branch | Project | Status | CR | V |
162491,3 | MB-48648 - securitySvc may not store certificate passed in by cbauth | master | goxdcr | Status: ABANDONED | 0 | 0 |
162492,2 | MB-48648: Always cache certificate | master | goxdcr | Status: MERGED | +2 | +1 |