conduktor.io ↗

KIP-687 — Automatic Reloading of Security Store

Accepted SecurityKRaft

Adds an explicit `AlterConfig` handler for TLS keystore/truststore reload so that the security store reload still works after all `AlterConfig` requests are forwarded to the active KRaft controller. The existing reload relied on the broker receiving the ZooKeeper notification directly; controller-side forwarding broke this mechanism.

Details

AuthorBoyang Chen
StatusAccepted
JIRAKAFKA-10345
WikiView on Apache Wiki
Created2020-11-25
Last Modified2021-09-08
Explore how this KIP affects the Kafka protocol in the Protocol Explorer, or see the full KIP database.