[SECURITY] [CVE-2020-17520] Pulsar Manager security bug(bypass admin interceptor)

2020-12-17 Thread Guangning E
CVE-2020-17520 Apache Pulsar Manager Information Disclosure Severity: High Vendor: The Apache Software Foundation Versions Affected: Apache Pulsar Manager 0.1.0 Description In Pulsar manager 0.1.0 version, malicious users will be able to bypass pulsar-manager's admin, permission verification me

[GitHub] [pulsar-helm-chart] Syphixs opened a new issue #90: Zookeeper Error: Could not find or load main class #

2020-12-17 Thread GitBox
Syphixs opened a new issue #90: URL: https://github.com/apache/pulsar-helm-chart/issues/90 **Describe the bug** I tried to create a new cluster from scratch but the zookeeper won't start. For testing I changed component sizes to: 1 x proxy 1 x broker 2 x zookeeper 3 x bo

Re: [PROPOSAL] PIP 74: Pulsar client memory limits

2020-12-17 Thread Yuto Furuta
Matteo, Thank you for your proposal. I have two questions about it. 1. Why are producer queue size related settings deprecated/ignored? It may be true that it is easy for users to set memory sizes than queue sizes. However, there may be some users who have already set appropriate values. So, I th