Jared Stewart created GEODE-3445:
------------------------------------

             Summary: Add Gfsh Connect option --skip-ssl-validation
                 Key: GEODE-3445
                 URL: https://issues.apache.org/jira/browse/GEODE-3445
             Project: Geode
          Issue Type: New Feature
          Components: gfsh
            Reporter: Jared Stewart


We have users who would like to connect to a locator from gfsh over HTTPS 
without verifying the hostname of the locator.  (This is a common pattern in 
testing environments or where self-signed certificates are used.)  We already 
have some code used for tests to enable this behavior:

{noformat}
   // This is for testing purpose only. If we remove this piece of code we will
    // get a java.security.cert.CertificateException
    // as matching hostname can not be obtained in all test environment.
    HttpsURLConnection.setDefaultHostnameVerifier(new HostnameVerifier() {
      @Override
      public boolean verify(String string, SSLSession ssls) {
        return true;
      }
    });
{noformat}

We just need to conditionally call this code inside Gfsh Connect if the 
--skip-ssl-validation option is specified.



--
This message was sent by Atlassian JIRA
(v6.4.14#64029)

Reply via email to