[ https://issues.apache.org/jira/browse/SOLR-14111?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16999152#comment-16999152 ]
Jan Høydahl commented on SOLR-14111: ------------------------------------ [~krisden] do you agree that for 8.4.1 it is safer to revert jetty than to upgrade it? As I understood, v9.4.19 is also broken wrt client auth? Doing both jetty upgrade and your fixes for a bugfix release seems a bit too much. > Revert SOLR-13541 which breaks SSL client auth > ---------------------------------------------- > > Key: SOLR-14111 > URL: https://issues.apache.org/jira/browse/SOLR-14111 > Project: Solr > Issue Type: Bug > Security Level: Public(Default Security Level. Issues are Public) > Reporter: Jan Høydahl > Assignee: Jan Høydahl > Priority: Major > Fix For: 8.4.1 > > Time Spent: 10m > Remaining Estimate: 0h > > Propose to revert SOLR-13541 which was the commit introducing the regression. > This means rolling back to Jetty 9.4.14, in branch_8_4 only. Then release a > bugfix version 8.4.1 with this fix. > The full fix of this issue will come in SOLR-14105 and SOLR-14106 in 8.5.0 > but is more involved, requires further upgrade of Jetty beyond 9.4.19 and is > thus not suitable for a bugfix release. -- This message was sent by Atlassian Jira (v8.3.4#803005) --------------------------------------------------------------------- To unsubscribe, e-mail: issues-unsubscr...@lucene.apache.org For additional commands, e-mail: issues-h...@lucene.apache.org