FLINK-37953: Add OBF password obfuscation support for SSL configurations #26677
+22
−5
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
What is the purpose of the change
This PR implements OBF password obfuscation support for Flink's SSL configurations to eliminate plaintext password exposure in configuration files
Brief change log
New Features:
Added support for Jetty OBF password obfuscation format (OBF:...) for all SSL-related passwords:
Changes
Backwards Compatibility:
Verifying this change
With OBF password obfuscation way, the functionality of the Flink's works seamlessly and the history server webUI also launches in SSL mode same as the Plain-text mode.
(Please pick either of the following options)
This change is a trivial rework / code cleanup without any test coverage.