]
Yeray Borges reopened WFWIP-229:
--------------------------------
Hello [~mjurc], I mistakenly tested this issue, so I', reopening it now to verify it.
Currently for CD17 is it not possible to configure ASYM_ENCRYPT via elytron, which means
we are currently adding always the deprecated protocol. We need to work out JGroups in
order to add this feature to the CD18 image.
My fault, my tests were done using SYM_ENCRYPT instead of ASYM_ENCRYPT and I incorrectly
assumed they were correct.
Configuring JGroups encryption protocols produces deprecated
configuration
--------------------------------------------------------------------------
Key: WFWIP-229
URL:
https://issues.jboss.org/browse/WFWIP-229
Project: WildFly WIP
Issue Type: Bug
Components: OpenShift
Environment: The example has been produced with the following S2I environment
variables:
{code}
OPENSHIFT_DNS_PING_SERVICE_NAME=ping-service
JGROUPS_ENCRYPT_PROTOCOL=ASYM_ENCRYPT
JGROUPS_CLUSTER_PASSWORD=foobar123
OPENSHIFT_DNS_PING_SERVICE_PORT=8888
JGROUPS_PING_PROTOCOL=dns.DNS_PING
SCRIPT_DEBUG=true
{code}
Reporter: Michal Jurc
Assignee: Yeray Borges
Priority: Critical
Any S2I configuration of ping protocols utilising encryption for protocols will result in
deprecated configuration. S2I should not configure runtime to deprecated configuration by
default, unless the user chooses to.
{code:title=Example JGroups ASYM_ENCRYPT configuration}
[standalone@localhost:9990 /]
/subsystem=jgroups/stack=tcp/protocol=org.jgroups.protocols.ASYM_ENCRYPT:read-resource-description
{
"outcome" => "success",
"result" => {
"description" => "The configuration of a protocol within a
protocol stac
k.",
"capabilities" => [{
"name" => "org.wildfly.clustering.jgroups.protocol",
"dynamic" => true,
"dynamic-elements" => [
"stack",
"protocol"
]
}],
"deprecated" => {
"since" => "5.0.0",
"reason" => "Deprecated. Use protocol=ASYM_ENCRYPT
instead."
},
"attributes" => {
"module" => {
"type" => STRING,
"description" => "The module with which to resolve the
protocol
type.",
"expressions-allowed" => true,
"required" => false,
"nillable" => true,
"default" => "org.jgroups",
"access-type" => "read-write",
"storage" => "configuration",
"restart-required" => "resource-services"
},
"properties" => {
"type" => OBJECT,
"description" => "The properties of this
protocol.",
"expressions-allowed" => true,
"required" => false,
"nillable" => true,
"value-type" => STRING,
"access-type" => "read-write",
"storage" => "configuration",
"restart-required" => "resource-services"
},
"socket-binding" => {
"type" => STRING,
"description" => "Defines the bind address/port used of
the serv
er socket used to receive messages from other cluster members.",
"expressions-allowed" => false,
"required" => false,
"nillable" => true,
"min-length" => 1L,
"max-length" => 2147483647L,
"deprecated" => {
"since" => "5.0.0",
"reason" => "Deprecated. Supports EAP 7.0
slaves."
},
"access-type" => "read-only",
"storage" => "configuration"
},
"statistics-enabled" => {
"type" => BOOLEAN,
"description" => "Indicates whether or not this
protocol will co
llect statistics overriding stack configuration.",
"expressions-allowed" => true,
"required" => false,
"nillable" => true,
"access-type" => "read-write",
"storage" => "configuration",
"restart-required" => "resource-services"
}
},
"operations" => undefined,
"notifications" => undefined,
"children" => {"property" => {
"description" => "A JGroups protocol property.",
"model-description" => undefined
}}
}
}
{code}