From dev-return-357230-apmail-lucene-dev-archive=lucene.apache.org@lucene.apache.org Thu May 30 16:16:05 2019 Return-Path: X-Original-To: apmail-lucene-dev-archive@www.apache.org Delivered-To: apmail-lucene-dev-archive@www.apache.org Received: from mail.apache.org (hermes.apache.org [207.244.88.153]) by minotaur.apache.org (Postfix) with SMTP id 5A1D419F1D for ; Thu, 30 May 2019 16:16:05 +0000 (UTC) Received: (qmail 7343 invoked by uid 500); 30 May 2019 16:16:02 -0000 Delivered-To: apmail-lucene-dev-archive@lucene.apache.org Received: (qmail 7288 invoked by uid 500); 30 May 2019 16:16:02 -0000 Mailing-List: contact dev-help@lucene.apache.org; run by ezmlm Precedence: bulk List-Help: List-Unsubscribe: List-Post: List-Id: Reply-To: dev@lucene.apache.org Delivered-To: mailing list dev@lucene.apache.org Received: (qmail 7267 invoked by uid 99); 30 May 2019 16:16:01 -0000 Received: from mailrelay1-us-west.apache.org (HELO mailrelay1-us-west.apache.org) (209.188.14.139) by apache.org (qpsmtpd/0.29) with ESMTP; Thu, 30 May 2019 16:16:01 +0000 Received: from jira-lw-us.apache.org (unknown [207.244.88.139]) by mailrelay1-us-west.apache.org (ASF Mail Server at mailrelay1-us-west.apache.org) with ESMTP id E1E3BE2CD6 for ; Thu, 30 May 2019 16:16:00 +0000 (UTC) Received: from jira-lw-us.apache.org (localhost [127.0.0.1]) by jira-lw-us.apache.org (ASF Mail Server at jira-lw-us.apache.org) with ESMTP id 5D5D7245A2 for ; Thu, 30 May 2019 16:16:00 +0000 (UTC) Date: Thu, 30 May 2019 16:16:00 +0000 (UTC) From: "Erick Erickson (JIRA)" To: dev@lucene.apache.org Message-ID: In-Reply-To: References: Subject: [jira] [Assigned] (SOLR-13502) Investigate using something other than ZooKeeper's "4 letter words" for the admin UI status MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 7bit X-JIRA-FingerPrint: 30527f35849b9dde25b450d4833f0394 [ https://issues.apache.org/jira/browse/SOLR-13502?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Erick Erickson reassigned SOLR-13502: ------------------------------------- Assignee: Erick Erickson > Investigate using something other than ZooKeeper's "4 letter words" for the admin UI status > ------------------------------------------------------------------------------------------- > > Key: SOLR-13502 > URL: https://issues.apache.org/jira/browse/SOLR-13502 > Project: Solr > Issue Type: Improvement > Security Level: Public(Default Security Level. Issues are Public) > Reporter: Erick Erickson > Assignee: Erick Erickson > Priority: Major > > ZooKeeper 3.5.5 requires a whitelist of allowed "4 letter words". The only place I see on a quick look at the Solr code where 4lws are used is in the admin UI "ZK Status" link. > In order to use the admin UI "ZK Status" link, users will have to modify their zoo.cfg file with > {code} > 4lw.commands.whitelist=mntr,conf,ruok > {code} > This JIRA is to see if there are alternatives to using 4lw for the admin UI. > This depends on SOLR-8346. If we find an alternative, we need to remove the additions to the ref guide that mention changing zoo.cfg (just scan for 4lw in all the .adoc files) and remove SolrZkServer.ZK_WHITELIST_PROPERTY and all references to it (SolrZkServer and SolrTestCaseJ4). -- This message was sent by Atlassian JIRA (v7.6.3#76005) --------------------------------------------------------------------- To unsubscribe, e-mail: dev-unsubscribe@lucene.apache.org For additional commands, e-mail: dev-help@lucene.apache.org