[ https://issues.apache.org/jira/browse/CASSANDRA-18034?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17631885#comment-17631885 ]
Jyothsna Konisa commented on CASSANDRA-18034: --------------------------------------------- PR : https://github.com/apache/cassandra/pull/1995 > Adding endpoint verification option to client_encryption_options > ---------------------------------------------------------------- > > Key: CASSANDRA-18034 > URL: https://issues.apache.org/jira/browse/CASSANDRA-18034 > Project: Cassandra > Issue Type: New Feature > Reporter: Jyothsna Konisa > Assignee: Jyothsna Konisa > Priority: Normal > Time Spent: 10m > Remaining Estimate: 0h > > Add a new property `client_encryption_options.require_endpoint_verification` > in cassandra.yaml to enable endpoint verification on client connections > optionally. When this property is set to true, the IP/hostname of the client > is verified against the IP/hostname that is present in the SAN of the client > certificates. This would help in preventing clients stealing certificates > from the hosts and using them while connecting to cassandra. -- This message was sent by Atlassian Jira (v8.20.10#820010) --------------------------------------------------------------------- To unsubscribe, e-mail: commits-unsubscr...@cassandra.apache.org For additional commands, e-mail: commits-h...@cassandra.apache.org