Re: Security vulnerabilities in kafka:2.13-2.6.0/2.7.0 docker image

2021-08-31 Thread Luke Chen
Hi Ashish, I suggested that you upgrade to V2.8. I checked 2 of the CVEs, and are fixed (or not used, like libfetch) in V2.8. If you still found the CVEs existed in V2.8, please raise it. Thank you. Luke On Wed, Sep 1, 2021 at 4:07 AM Ashish Patil wrote: > Hi Team > > I wanted to use the 2.6

Re: [DISCUSS] KIP-771: KRaft broker should not expose controller metrics

2021-08-31 Thread Colin McCabe
Hi Ryan, Thanks for the KIP. Hmm, we don't really use the term "zookeeper brokers." That is confusing since ZK and Kafka are separate services. I would suggest a term like pre-KRaft brokers. > Zookeeper brokers currently register 0 for every controller metric. It's not 0 for every broker, is

Build failed in Jenkins: Kafka » Kafka Branch Builder » trunk #441

2021-08-31 Thread Apache Jenkins Server
See Changes: -- [...truncated 489290 lines...] [2021-08-31T20:44:39.064Z] PlaintextConsumerTest > testLowMaxFetchSizeForRequestAndPartition() PASSED [2021-08-31T20:44:39.06

Security vulnerabilities in kafka:2.13-2.6.0/2.7.0 docker image

2021-08-31 Thread Ashish Patil
Hi Team I wanted to use the 2.6.0 docker image for Kafka but It has lots of security vulnerabilities. Please find the below list of security vulnerabilities ** CVE-2021-36159 CVE-2020-25649 CVE-2021-22926 CVE-2021-22922 CVE-2021-22924 CVE-2021-22

Re: [VOTE] KIP-761: Add Total Blocked Time Metric to Streams

2021-08-31 Thread Guozhang Wang
Thanks for letting us know, Rohan. On Tue, Aug 31, 2021 at 1:08 AM Rohan Desai wrote: > FYI I've updated the metric names in the KIP to the form ".*-time-ns-total" > and clarified that the times being measured are in nanoseconds. > > On Wed, Jul 21, 2021 at 5:09 PM Rohan Desai > wrote: > > > No

Jenkins build is still unstable: Kafka » Kafka Branch Builder » 3.0 #122

2021-08-31 Thread Apache Jenkins Server
See

Re: [VOTE] 3.0.0 RC1

2021-08-31 Thread Konstantine Karantasis
Small correction to my previous email. The actual link for public preview of the 3.0.0 blog post draft is: https://blogs.apache.org/preview/kafka/?previewEntry=what-s-new-in-apache6 (see also the email thread with title: [DISCUSS] Please review the 3.0.0 blog post) Best, Konstantine On Tue, Aug

[DISCUSS] Please review the 3.0.0 blog post

2021-08-31 Thread Konstantine Karantasis
With the opportunity of the latest release candidate (RC1) I have also published a draft of the 3.0.0 release announcement, available for public preview, here: https://blogs.apache.org/preview/kafka/?previewEntry=what-s-new-in-apache6 This blog post is scheduled to be published in https://blogs.a

[jira] [Resolved] (KAFKA-13205) Clarify API specification of Kafka Connect endpoint

2021-08-31 Thread Jonathan Kaleve (Jira)
[ https://issues.apache.org/jira/browse/KAFKA-13205?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ] Jonathan Kaleve resolved KAFKA-13205. - Resolution: Fixed Resolution see https://github.com/strimzi/strimzi-kafka-operator/issue

[VOTE] 3.0.0 RC1

2021-08-31 Thread Konstantine Karantasis
Hello Kafka users, developers and client-developers, This is the second release candidate for Apache Kafka 3.0.0. It corresponds to a major release that includes many new features, including: * The deprecation of support for Java 8 and Scala 2.12. * Kafka Raft support for snapshots of the metadat

Re: [VOTE] 3.0.0 RC0

2021-08-31 Thread Konstantine Karantasis
There were a few issues during the staging of maven artifacts in the nexus staging repository for RC0. Closing the vote early here in favor of RC1 that has been staged successfully and will be announced shortly. Thanks, Konstantine On Fri, Aug 27, 2021 at 7:10 AM Konstantine Karantasis < kkaran

[jira] [Created] (KAFKA-13256) Possible NPE in ConfigDef when rendering (enriched) RST or HTML when documentation is not set/NULL

2021-08-31 Thread Jira
René Kerner created KAFKA-13256: --- Summary: Possible NPE in ConfigDef when rendering (enriched) RST or HTML when documentation is not set/NULL Key: KAFKA-13256 URL: https://issues.apache.org/jira/browse/KAFKA-13256

Jenkins build is still unstable: Kafka » Kafka Branch Builder » 2.8 #74

2021-08-31 Thread Apache Jenkins Server
See

Re: [VOTE] KIP-761: Add Total Blocked Time Metric to Streams

2021-08-31 Thread Rohan Desai
FYI I've updated the metric names in the KIP to the form ".*-time-ns-total" and clarified that the times being measured are in nanoseconds. On Wed, Jul 21, 2021 at 5:09 PM Rohan Desai wrote: > Now that the discussion thread's been open for a few days, I'm calling for > a vote on > > https://cwik