KIP-687 — Automatic Reloading of Security Store
Accepted SecurityKRaft
Adds an explicit `AlterConfig` handler for TLS keystore/truststore reload so that the security store reload still works after all `AlterConfig` requests are forwarded to the active KRaft controller. The existing reload relied on the broker receiving the ZooKeeper notification directly; controller-side forwarding broke this mechanism.
Details
| Author | Boyang Chen |
| Status | Accepted |
| JIRA | KAFKA-10345 |
| Wiki | View on Apache Wiki |
| Created | 2020-11-25 |
| Last Modified | 2021-09-08 |
Explore how this KIP affects the Kafka protocol in the Protocol Explorer, or see the full KIP database.