<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Kafka/SASL in Nuxeo Forum</title>
    <link>https://connect.hyland.com/t5/nuxeo-forum/kafka-sasl/m-p/322529#M9530</link>
    <description>&lt;P&gt;Hi,
You are right for now when using nuxeo.conf to generate the Kafka configuration you can use SASL only when TLS is enabled which is recommended configuration in production.
I have created &lt;A href="https://jira.nuxeo.com/browse/NXP-27100" target="test_blank"&gt;https://jira.nuxeo.com/browse/NXP-27100&lt;/A&gt; for your testing case.
In the meantime you can create your own configuration or enable SSL by generating self-signed certificates like here &lt;A href="https://github.com/bdelbosc/nuxeo-stacks/tree/master/roles/common/files/kafkassl" target="test_blank"&gt;https://github.com/bdelbosc/nuxeo-stacks/tree/master/roles/common/files/kafkassl&lt;/A&gt;
Regards
ben&lt;/P&gt;</description>
    <pubDate>Thu, 28 Mar 2019 12:04:45 GMT</pubDate>
    <dc:creator>ben_</dc:creator>
    <dc:date>2019-03-28T12:04:45Z</dc:date>
    <item>
      <title>Kafka/SASL</title>
      <link>https://connect.hyland.com/t5/nuxeo-forum/kafka-sasl/m-p/322526#M9527</link>
      <description>&lt;P&gt;Folks - regarding &lt;CODE&gt;kafka-config.xml.nxftl&lt;/CODE&gt;: Presently, SASL is only enabled if SSL is enabled. (The sasl &lt;CODE&gt;if&lt;/CODE&gt; directive is enclosed in the ssl &lt;CODE&gt;if&lt;/CODE&gt; directive.) In a local server testing environment, it might be beneficial to configure Kafka for SASL PLAINTEXT (or SCRAM_SHA_nnn)  -- to simplify the configuration for development and testing. (In fact, that's what I had tried.) But as &lt;CODE&gt;kafka-config.xml.nxftl&lt;/CODE&gt; is presently structured, this isn't possible without supplying a custom contrib. If the if/else statements in the nxftl were structured such that SASL and SSL were independent of one another, then SASL/PLAINTEXT (or SCRAM_SHA_nnn) could be tested without SSL just using nuxeo.conf settings.&lt;/P&gt;</description>
      <pubDate>Wed, 27 Mar 2019 18:51:49 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/nuxeo-forum/kafka-sasl/m-p/322526#M9527</guid>
      <dc:creator>Eric_Ace</dc:creator>
      <dc:date>2019-03-27T18:51:49Z</dc:date>
    </item>
    <item>
      <title>Re: Kafka/SASL</title>
      <link>https://connect.hyland.com/t5/nuxeo-forum/kafka-sasl/m-p/322527#M9528</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;I believe the problem you're describing is &lt;A href="https://jira.nuxeo.com/browse/NXP-26746"&gt;NXP-26746&lt;/A&gt; and has already been fixed.&lt;/P&gt;</description>
      <pubDate>Thu, 28 Mar 2019 10:00:58 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/nuxeo-forum/kafka-sasl/m-p/322527#M9528</guid>
      <dc:creator>Florent_Guillau</dc:creator>
      <dc:date>2019-03-28T10:00:58Z</dc:date>
    </item>
    <item>
      <title>Re: Kafka/SASL</title>
      <link>https://connect.hyland.com/t5/nuxeo-forum/kafka-sasl/m-p/322528#M9529</link>
      <description>&lt;P&gt;Thanks - I was describing setting up for sasl-only&lt;/P&gt;</description>
      <pubDate>Thu, 28 Mar 2019 10:52:38 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/nuxeo-forum/kafka-sasl/m-p/322528#M9529</guid>
      <dc:creator>Eric_Ace</dc:creator>
      <dc:date>2019-03-28T10:52:38Z</dc:date>
    </item>
    <item>
      <title>Re: Kafka/SASL</title>
      <link>https://connect.hyland.com/t5/nuxeo-forum/kafka-sasl/m-p/322529#M9530</link>
      <description>&lt;P&gt;Hi,
You are right for now when using nuxeo.conf to generate the Kafka configuration you can use SASL only when TLS is enabled which is recommended configuration in production.
I have created &lt;A href="https://jira.nuxeo.com/browse/NXP-27100" target="test_blank"&gt;https://jira.nuxeo.com/browse/NXP-27100&lt;/A&gt; for your testing case.
In the meantime you can create your own configuration or enable SSL by generating self-signed certificates like here &lt;A href="https://github.com/bdelbosc/nuxeo-stacks/tree/master/roles/common/files/kafkassl" target="test_blank"&gt;https://github.com/bdelbosc/nuxeo-stacks/tree/master/roles/common/files/kafkassl&lt;/A&gt;
Regards
ben&lt;/P&gt;</description>
      <pubDate>Thu, 28 Mar 2019 12:04:45 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/nuxeo-forum/kafka-sasl/m-p/322529#M9530</guid>
      <dc:creator>ben_</dc:creator>
      <dc:date>2019-03-28T12:04:45Z</dc:date>
    </item>
    <item>
      <title>Re: Kafka/SASL</title>
      <link>https://connect.hyland.com/t5/nuxeo-forum/kafka-sasl/m-p/322530#M9531</link>
      <description>&lt;P&gt;Thank you.&lt;/P&gt;</description>
      <pubDate>Thu, 28 Mar 2019 13:50:55 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/nuxeo-forum/kafka-sasl/m-p/322530#M9531</guid>
      <dc:creator>Eric_Ace</dc:creator>
      <dc:date>2019-03-28T13:50:55Z</dc:date>
    </item>
  </channel>
</rss>

