Yang, Tong 6182f91ba8 MRS component operation guide_normal 2.0.38.SP20 version
Reviewed-by: Hasko, Vladimir <vladimir.hasko@t-systems.com>
Co-authored-by: Yang, Tong <yangtong2@huawei.com>
Co-committed-by: Yang, Tong <yangtong2@huawei.com>
2022-12-09 14:55:21 +00:00

247 lines
20 KiB
HTML

<a name="mrs_01_1569"></a><a name="mrs_01_1569"></a>
<h1 class="topictitle1">SSL</h1>
<div id="body1596163871725"><div class="section" id="mrs_01_1569__s89aa4a6fa2bb4ddaa3c480a296b1c8ad"><h4 class="sectiontitle">Scenarios</h4><p id="mrs_01_1569__a669f5e4e39ae43cba0610f724f32f288">When the secure Flink cluster is required, SSL-related configuration items must be set.</p>
</div>
<div class="section" id="mrs_01_1569__sb84427a3feb64f8593b30b0f78cae3ff"><h4 class="sectiontitle">Configuration Description</h4><p id="mrs_01_1569__a556e7f3f25064e64b02bacef39225c83">Configuration items include the SSL switch, certificate, password, and encryption algorithm.</p>
<p id="mrs_01_1569__p035112247416">For versions earlier than MRS 3.x, see <a href="#mrs_01_1569__table956544414184">Table 1</a>.</p>
<div class="tablenoborder"><a name="mrs_01_1569__table956544414184"></a><a name="table956544414184"></a><table cellpadding="4" cellspacing="0" summary="" id="mrs_01_1569__table956544414184" frame="border" border="1" rules="all"><caption><b>Table 1 </b>Parameters</caption><thead align="left"><tr id="mrs_01_1569__row65654448188"><th align="left" class="cellrowborder" valign="top" width="25%" id="mcps1.3.2.4.2.5.1.1"><p id="mrs_01_1569__p125657441185">Parameter</p>
</th>
<th align="left" class="cellrowborder" valign="top" width="10.489999999999998%" id="mcps1.3.2.4.2.5.1.2"><p id="mrs_01_1569__p2056564431818">Mandatory</p>
</th>
<th align="left" class="cellrowborder" valign="top" width="26.529999999999998%" id="mcps1.3.2.4.2.5.1.3"><p id="mrs_01_1569__p13566644111819">Default Value</p>
</th>
<th align="left" class="cellrowborder" valign="top" width="37.980000000000004%" id="mcps1.3.2.4.2.5.1.4"><p id="mrs_01_1569__p20566644111819">Description</p>
</th>
</tr>
</thead>
<tbody><tr id="mrs_01_1569__row175661544171818"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.2.4.2.5.1.1 "><p id="mrs_01_1569__p81073617194">security.ssl.internal.enabled</p>
</td>
<td class="cellrowborder" valign="top" width="10.489999999999998%" headers="mcps1.3.2.4.2.5.1.2 "><p id="mrs_01_1569__p14385122514194">Yes</p>
</td>
<td class="cellrowborder" valign="top" width="26.529999999999998%" headers="mcps1.3.2.4.2.5.1.3 "><p id="mrs_01_1569__p3514121911910">The value is automatically configured according to the cluster installation mode.</p>
<ul id="mrs_01_1569__ul1251481921919"><li id="mrs_01_1569__li251421911910">Security mode: The default value is <strong id="mrs_01_1569__b2095359332101254">true</strong>.</li><li id="mrs_01_1569__li1651419196192">Normal mode: The default value is <strong id="mrs_01_1569__b215803507101254">false</strong>.</li></ul>
</td>
<td class="cellrowborder" valign="top" width="37.980000000000004%" headers="mcps1.3.2.4.2.5.1.4 "><p id="mrs_01_1569__p49151910101915">Main switch of internal communication SSL.</p>
</td>
</tr>
<tr id="mrs_01_1569__row145662044171818"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.2.4.2.5.1.1 "><p id="mrs_01_1569__p310712613195">security.ssl.internal.keystore</p>
</td>
<td class="cellrowborder" valign="top" width="10.489999999999998%" headers="mcps1.3.2.4.2.5.1.2 "><p id="mrs_01_1569__p10385025161918">Yes</p>
</td>
<td class="cellrowborder" valign="top" width="26.529999999999998%" headers="mcps1.3.2.4.2.5.1.3 "><p id="mrs_01_1569__p115141819191915">-</p>
</td>
<td class="cellrowborder" valign="top" width="37.980000000000004%" headers="mcps1.3.2.4.2.5.1.4 "><p id="mrs_01_1569__p17915201041917">Java keystore file.</p>
</td>
</tr>
<tr id="mrs_01_1569__row2566124421810"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.2.4.2.5.1.1 "><p id="mrs_01_1569__p1410716171910">security.ssl.internal.keystore-password</p>
</td>
<td class="cellrowborder" valign="top" width="10.489999999999998%" headers="mcps1.3.2.4.2.5.1.2 "><p id="mrs_01_1569__p2038522514193">Yes</p>
</td>
<td class="cellrowborder" valign="top" width="26.529999999999998%" headers="mcps1.3.2.4.2.5.1.3 "><p id="mrs_01_1569__p85141219201914">-</p>
</td>
<td class="cellrowborder" valign="top" width="37.980000000000004%" headers="mcps1.3.2.4.2.5.1.4 "><p id="mrs_01_1569__p109154103190">Password used to decrypt the keystore file.</p>
</td>
</tr>
<tr id="mrs_01_1569__row2566044141812"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.2.4.2.5.1.1 "><p id="mrs_01_1569__p8666743171916">security.ssl.internal.key-password</p>
</td>
<td class="cellrowborder" valign="top" width="10.489999999999998%" headers="mcps1.3.2.4.2.5.1.2 "><p id="mrs_01_1569__p1243982122017">Yes</p>
</td>
<td class="cellrowborder" valign="top" width="26.529999999999998%" headers="mcps1.3.2.4.2.5.1.3 "><p id="mrs_01_1569__p122986550192">-</p>
</td>
<td class="cellrowborder" valign="top" width="37.980000000000004%" headers="mcps1.3.2.4.2.5.1.4 "><p id="mrs_01_1569__p8390124917196">Password used to decrypt the server key in the keystore file.</p>
</td>
</tr>
<tr id="mrs_01_1569__row556784451810"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.2.4.2.5.1.1 "><p id="mrs_01_1569__p16666114317195">security.ssl.internal.truststore</p>
</td>
<td class="cellrowborder" valign="top" width="10.489999999999998%" headers="mcps1.3.2.4.2.5.1.2 "><p id="mrs_01_1569__p8439828207">Yes</p>
</td>
<td class="cellrowborder" valign="top" width="26.529999999999998%" headers="mcps1.3.2.4.2.5.1.3 "><p id="mrs_01_1569__p1629816553190">-</p>
</td>
<td class="cellrowborder" valign="top" width="37.980000000000004%" headers="mcps1.3.2.4.2.5.1.4 "><p id="mrs_01_1569__p1239054951910"><strong id="mrs_01_1569__b1352410291">truststore</strong> file containing the public CA certificates.</p>
</td>
</tr>
<tr id="mrs_01_1569__row656754451819"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.2.4.2.5.1.1 "><p id="mrs_01_1569__p4666543191910">security.ssl.internal.truststore-password</p>
</td>
<td class="cellrowborder" valign="top" width="10.489999999999998%" headers="mcps1.3.2.4.2.5.1.2 "><p id="mrs_01_1569__p94393212012">Yes</p>
</td>
<td class="cellrowborder" valign="top" width="26.529999999999998%" headers="mcps1.3.2.4.2.5.1.3 "><p id="mrs_01_1569__p1329811556193">-</p>
</td>
<td class="cellrowborder" valign="top" width="37.980000000000004%" headers="mcps1.3.2.4.2.5.1.4 "><p id="mrs_01_1569__p193904495195">Password used to decrypt the truststore file.</p>
</td>
</tr>
<tr id="mrs_01_1569__row3567114491814"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.2.4.2.5.1.1 "><p id="mrs_01_1569__p186661643151916">security.ssl.protocol</p>
</td>
<td class="cellrowborder" valign="top" width="10.489999999999998%" headers="mcps1.3.2.4.2.5.1.2 "><p id="mrs_01_1569__p7440423206">Yes</p>
</td>
<td class="cellrowborder" valign="top" width="26.529999999999998%" headers="mcps1.3.2.4.2.5.1.3 "><p id="mrs_01_1569__p62991555201916">TLSv1.2</p>
</td>
<td class="cellrowborder" valign="top" width="37.980000000000004%" headers="mcps1.3.2.4.2.5.1.4 "><p id="mrs_01_1569__p1039010497199">SSL transmission protocol version</p>
</td>
</tr>
<tr id="mrs_01_1569__row656817442185"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.2.4.2.5.1.1 "><p id="mrs_01_1569__p19666443201915">security.ssl.algorithms</p>
</td>
<td class="cellrowborder" valign="top" width="10.489999999999998%" headers="mcps1.3.2.4.2.5.1.2 "><p id="mrs_01_1569__p14440923204">Yes</p>
</td>
<td class="cellrowborder" valign="top" width="26.529999999999998%" headers="mcps1.3.2.4.2.5.1.3 "><p id="mrs_01_1569__p1829955515198">The default value is <strong id="mrs_01_1569__b116928325101254">TLS_RSA_WITH_AES_128_CBC_SHA256,TLS_DHE_RSA_WITH_AES_128_CBC_SHA256,TLS_DHE_DSS_WITH_AES_128_CBC_SHA256</strong>.</p>
</td>
<td class="cellrowborder" valign="top" width="37.980000000000004%" headers="mcps1.3.2.4.2.5.1.4 "><p id="mrs_01_1569__p1139018493198">Supported SSL standard algorithm. For details, see the Java official website.</p>
</td>
</tr>
<tr id="mrs_01_1569__row136382191219"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.2.4.2.5.1.1 "><p id="mrs_01_1569__p6600113810141">security.ssl.rest.enabled</p>
</td>
<td class="cellrowborder" valign="top" width="10.489999999999998%" headers="mcps1.3.2.4.2.5.1.2 "><p id="mrs_01_1569__p1260013818147">Yes</p>
</td>
<td class="cellrowborder" valign="top" width="26.529999999999998%" headers="mcps1.3.2.4.2.5.1.3 "><p id="mrs_01_1569__p56001538111419">The value is automatically configured according to the cluster installation mode.</p>
<ul id="mrs_01_1569__ul760019381146"><li id="mrs_01_1569__li12600438131413">Security mode: The default value is <strong id="mrs_01_1569__b1174260487101254">true</strong>.</li><li id="mrs_01_1569__li17600103841420">Normal mode: The default value is <strong id="mrs_01_1569__b1953986799101254">false</strong>.</li></ul>
</td>
<td class="cellrowborder" valign="top" width="37.980000000000004%" headers="mcps1.3.2.4.2.5.1.4 "><p id="mrs_01_1569__p19600123817149">Main switch of external communication SSL.</p>
</td>
</tr>
<tr id="mrs_01_1569__row1243418413138"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.2.4.2.5.1.1 "><p id="mrs_01_1569__p2601638181411">security.ssl.rest.keystore</p>
</td>
<td class="cellrowborder" valign="top" width="10.489999999999998%" headers="mcps1.3.2.4.2.5.1.2 "><p id="mrs_01_1569__p1560117384142">Yes</p>
</td>
<td class="cellrowborder" valign="top" width="26.529999999999998%" headers="mcps1.3.2.4.2.5.1.3 "><p id="mrs_01_1569__p8601193811419">-</p>
</td>
<td class="cellrowborder" valign="top" width="37.980000000000004%" headers="mcps1.3.2.4.2.5.1.4 "><p id="mrs_01_1569__p1660117384144">Java keystore file.</p>
</td>
</tr>
<tr id="mrs_01_1569__row44761023191416"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.2.4.2.5.1.1 "><p id="mrs_01_1569__p1660115387148">security.ssl.rest.keystore-password</p>
</td>
<td class="cellrowborder" valign="top" width="10.489999999999998%" headers="mcps1.3.2.4.2.5.1.2 "><p id="mrs_01_1569__p6601203811145">Yes</p>
</td>
<td class="cellrowborder" valign="top" width="26.529999999999998%" headers="mcps1.3.2.4.2.5.1.3 "><p id="mrs_01_1569__p18601103811142">-</p>
</td>
<td class="cellrowborder" valign="top" width="37.980000000000004%" headers="mcps1.3.2.4.2.5.1.4 "><p id="mrs_01_1569__p6601133812144">Password used to decrypt the keystore file.</p>
</td>
</tr>
<tr id="mrs_01_1569__row9427926201417"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.2.4.2.5.1.1 "><p id="mrs_01_1569__p76012386145">security.ssl.rest.key-password</p>
</td>
<td class="cellrowborder" valign="top" width="10.489999999999998%" headers="mcps1.3.2.4.2.5.1.2 "><p id="mrs_01_1569__p3601183801413">Yes</p>
</td>
<td class="cellrowborder" valign="top" width="26.529999999999998%" headers="mcps1.3.2.4.2.5.1.3 "><p id="mrs_01_1569__p12601103819146">-</p>
</td>
<td class="cellrowborder" valign="top" width="37.980000000000004%" headers="mcps1.3.2.4.2.5.1.4 "><p id="mrs_01_1569__p106013387143">Password used to decrypt the server key in the keystore file.</p>
</td>
</tr>
<tr id="mrs_01_1569__row4324153081417"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.2.4.2.5.1.1 "><p id="mrs_01_1569__p1760193861412">security.ssl.rest.truststore</p>
</td>
<td class="cellrowborder" valign="top" width="10.489999999999998%" headers="mcps1.3.2.4.2.5.1.2 "><p id="mrs_01_1569__p8602438191412">Yes</p>
</td>
<td class="cellrowborder" valign="top" width="26.529999999999998%" headers="mcps1.3.2.4.2.5.1.3 "><p id="mrs_01_1569__p7602338161418">-</p>
</td>
<td class="cellrowborder" valign="top" width="37.980000000000004%" headers="mcps1.3.2.4.2.5.1.4 "><p id="mrs_01_1569__p19602938161410"><strong id="mrs_01_1569__b1014603523212">truststore</strong> file containing the public CA certificates.</p>
</td>
</tr>
<tr id="mrs_01_1569__row2245183321413"><td class="cellrowborder" valign="top" width="25%" headers="mcps1.3.2.4.2.5.1.1 "><p id="mrs_01_1569__p19602438111420">security.ssl.rest.truststore-password</p>
</td>
<td class="cellrowborder" valign="top" width="10.489999999999998%" headers="mcps1.3.2.4.2.5.1.2 "><p id="mrs_01_1569__p96021738151412">Yes</p>
</td>
<td class="cellrowborder" valign="top" width="26.529999999999998%" headers="mcps1.3.2.4.2.5.1.3 "><p id="mrs_01_1569__p1760233813148">-</p>
</td>
<td class="cellrowborder" valign="top" width="37.980000000000004%" headers="mcps1.3.2.4.2.5.1.4 "><p id="mrs_01_1569__p560283812149">Password used to decrypt the truststore file.</p>
</td>
</tr>
</tbody>
</table>
</div>
<p id="mrs_01_1569__p342475712617">For configuration items for MRS 3.x or later, see <a href="#mrs_01_1569__t0257778dfe3544959abfc85715cc5672">Table 2</a>.</p>
<div class="tablenoborder"><a name="mrs_01_1569__t0257778dfe3544959abfc85715cc5672"></a><a name="t0257778dfe3544959abfc85715cc5672"></a><table cellpadding="4" cellspacing="0" summary="" id="mrs_01_1569__t0257778dfe3544959abfc85715cc5672" frame="border" border="1" rules="all"><caption><b>Table 2 </b>Parameters</caption><thead align="left"><tr id="mrs_01_1569__r064948680f6041b0ad611d1b6e7e3cde"><th align="left" class="cellrowborder" valign="top" width="23.61%" id="mcps1.3.2.6.2.5.1.1"><p id="mrs_01_1569__a41dd1662e80c42d1a9830a390f6c54bd">Parameter</p>
</th>
<th align="left" class="cellrowborder" valign="top" width="26.39%" id="mcps1.3.2.6.2.5.1.2"><p id="mrs_01_1569__ae61bb71bf3034b10acfc120c98447ccf">Description</p>
</th>
<th align="left" class="cellrowborder" valign="top" width="33.06%" id="mcps1.3.2.6.2.5.1.3"><p id="mrs_01_1569__af3536ef3d9f24145b9a71fca4307682e">Default Value</p>
</th>
<th align="left" class="cellrowborder" valign="top" width="16.939999999999998%" id="mcps1.3.2.6.2.5.1.4"><p id="mrs_01_1569__a2b8622d6e2fe42dc9cd3a819853a75db">Mandatory</p>
</th>
</tr>
</thead>
<tbody><tr id="mrs_01_1569__r9526eb094f87480298596ab2c8653145"><td class="cellrowborder" valign="top" width="23.61%" headers="mcps1.3.2.6.2.5.1.1 "><p id="mrs_01_1569__ad8fa71c05a9a4a65a1057ec2b4e6a9c8">security.ssl.enabled</p>
</td>
<td class="cellrowborder" valign="top" width="26.39%" headers="mcps1.3.2.6.2.5.1.2 "><p id="mrs_01_1569__a33046b1bf82346e7b6df24f8c2320302">Main switch of internal communication SSL.</p>
</td>
<td class="cellrowborder" valign="top" width="33.06%" headers="mcps1.3.2.6.2.5.1.3 "><p id="mrs_01_1569__en-us_topic_0085562851_p850162371917"><span id="mrs_01_1569__p42a6f82907814ea0b4ab74e5a013cfaf">The value is automatically configured according to the cluster installation mode.</span></p>
<ul id="mrs_01_1569__en-us_topic_0085562851_ul73115215219"><li id="mrs_01_1569__en-us_topic_0085562851_li43152105210">Security mode: The default value is <strong id="mrs_01_1569__b1593725191101254">true</strong>.</li><li id="mrs_01_1569__en-us_topic_0085562851_li4335215524">Non-security mode: The default value is <strong id="mrs_01_1569__b1085457561101254">false</strong>.</li></ul>
</td>
<td class="cellrowborder" valign="top" width="16.939999999999998%" headers="mcps1.3.2.6.2.5.1.4 "><p id="mrs_01_1569__a1bff3e601cfa419da694f29650f85202">Yes</p>
</td>
</tr>
<tr id="mrs_01_1569__rf944417e9c6c4ff1b45cc2c38a84db08"><td class="cellrowborder" valign="top" width="23.61%" headers="mcps1.3.2.6.2.5.1.1 "><p id="mrs_01_1569__af0bed05a970f4b02aef9e0f497853108">security.ssl.keystore</p>
</td>
<td class="cellrowborder" valign="top" width="26.39%" headers="mcps1.3.2.6.2.5.1.2 "><p id="mrs_01_1569__ae4d96b1788304584bf813ca70520df01">Java keystore file.</p>
</td>
<td class="cellrowborder" valign="top" width="33.06%" headers="mcps1.3.2.6.2.5.1.3 "><p id="mrs_01_1569__a975bea0ce7b34ef4bd501a70c7bf910d">-</p>
</td>
<td class="cellrowborder" valign="top" width="16.939999999999998%" headers="mcps1.3.2.6.2.5.1.4 "><p id="mrs_01_1569__abefc2e32845a44969b4e169b06866428">Yes</p>
</td>
</tr>
<tr id="mrs_01_1569__ra532155d46444ced86e62e4975909664"><td class="cellrowborder" valign="top" width="23.61%" headers="mcps1.3.2.6.2.5.1.1 "><p id="mrs_01_1569__a6fdfc88ee2134a2abced3badeaa03781">security.ssl.keystore-password</p>
</td>
<td class="cellrowborder" valign="top" width="26.39%" headers="mcps1.3.2.6.2.5.1.2 "><p id="mrs_01_1569__a94461ecb134f4b7cb48e328059001d74">Password used to decrypt the keystore file.</p>
</td>
<td class="cellrowborder" valign="top" width="33.06%" headers="mcps1.3.2.6.2.5.1.3 "><p id="mrs_01_1569__aeadf9d7b7e7f4629904bc3125557ffc7">-</p>
</td>
<td class="cellrowborder" valign="top" width="16.939999999999998%" headers="mcps1.3.2.6.2.5.1.4 "><p id="mrs_01_1569__a807dfe5281994fb9ad61d7bb6cb30dd1">Yes</p>
</td>
</tr>
<tr id="mrs_01_1569__rfe494f98f45345eebc885fc63d5a43a7"><td class="cellrowborder" valign="top" width="23.61%" headers="mcps1.3.2.6.2.5.1.1 "><p id="mrs_01_1569__a0b06dce9608b4245802d284503a76cd2">security.ssl.key-password</p>
</td>
<td class="cellrowborder" valign="top" width="26.39%" headers="mcps1.3.2.6.2.5.1.2 "><p id="mrs_01_1569__a4c02bda84d9b44c1a9f12b0c39f6d446">Password used to decrypt the server key in the keystore file.</p>
</td>
<td class="cellrowborder" valign="top" width="33.06%" headers="mcps1.3.2.6.2.5.1.3 "><p id="mrs_01_1569__a301aa50e60234e1583e52e789a98f810">-</p>
</td>
<td class="cellrowborder" valign="top" width="16.939999999999998%" headers="mcps1.3.2.6.2.5.1.4 "><p id="mrs_01_1569__a571a729a26a0492a9e9d0afde6b11a22">Yes</p>
</td>
</tr>
<tr id="mrs_01_1569__r0ef2d94fdbc843dc8cafefb32d79a26e"><td class="cellrowborder" valign="top" width="23.61%" headers="mcps1.3.2.6.2.5.1.1 "><p id="mrs_01_1569__a5c3e70ccda0846d1be10c4d331541f6d">security.ssl.truststore</p>
</td>
<td class="cellrowborder" valign="top" width="26.39%" headers="mcps1.3.2.6.2.5.1.2 "><p id="mrs_01_1569__aa081fd571dd1409396391d0f0d0463db"><strong id="mrs_01_1569__b1309534113611">truststore</strong> file containing the public CA certificates.</p>
</td>
<td class="cellrowborder" valign="top" width="33.06%" headers="mcps1.3.2.6.2.5.1.3 "><p id="mrs_01_1569__a5109ee50685741408a3734da98e2ce34">-</p>
</td>
<td class="cellrowborder" valign="top" width="16.939999999999998%" headers="mcps1.3.2.6.2.5.1.4 "><p id="mrs_01_1569__aa3720ada16ae461296ddb46e63662a31">Yes</p>
</td>
</tr>
<tr id="mrs_01_1569__ra09b0fc7398b4a37a485cc1d9f3e9c60"><td class="cellrowborder" valign="top" width="23.61%" headers="mcps1.3.2.6.2.5.1.1 "><p id="mrs_01_1569__a61770cd9dc634886a96870385adfdc68">security.ssl.truststore-password</p>
</td>
<td class="cellrowborder" valign="top" width="26.39%" headers="mcps1.3.2.6.2.5.1.2 "><p id="mrs_01_1569__af34f4eeb37964b3c8a35e9baba97e9bb">Password used to decrypt the truststore file.</p>
</td>
<td class="cellrowborder" valign="top" width="33.06%" headers="mcps1.3.2.6.2.5.1.3 "><p id="mrs_01_1569__a1c1bebde8a414918989bc5c598985d33">-</p>
</td>
<td class="cellrowborder" valign="top" width="16.939999999999998%" headers="mcps1.3.2.6.2.5.1.4 "><p id="mrs_01_1569__ab6331ae403934b0190852dac112ebbb9">Yes</p>
</td>
</tr>
<tr id="mrs_01_1569__r6d29ff1c6035435f95d22dc075396594"><td class="cellrowborder" valign="top" width="23.61%" headers="mcps1.3.2.6.2.5.1.1 "><p id="mrs_01_1569__aac8517b2175540ecab77773b61ce0bfc">security.ssl.protocol</p>
</td>
<td class="cellrowborder" valign="top" width="26.39%" headers="mcps1.3.2.6.2.5.1.2 "><p id="mrs_01_1569__a3bbfa5f937c04c2a8b32f032ea2f6eec">SSL transmission protocol version.</p>
</td>
<td class="cellrowborder" valign="top" width="33.06%" headers="mcps1.3.2.6.2.5.1.3 "><p id="mrs_01_1569__a59285cad0f244d54931825eb73641d49">TLSv1.2</p>
</td>
<td class="cellrowborder" valign="top" width="16.939999999999998%" headers="mcps1.3.2.6.2.5.1.4 "><p id="mrs_01_1569__aafea2f123e3744e0943f8ffbf0acae8a">Yes</p>
</td>
</tr>
<tr id="mrs_01_1569__r0fea598b0a7a4de9b642cc69969c57e9"><td class="cellrowborder" valign="top" width="23.61%" headers="mcps1.3.2.6.2.5.1.1 "><p id="mrs_01_1569__a413b9a7b38e04a3cbca3275203bc0237">security.ssl.algorithms</p>
</td>
<td class="cellrowborder" valign="top" width="26.39%" headers="mcps1.3.2.6.2.5.1.2 "><p id="mrs_01_1569__addb9e57302f7456694744175a39e5a63">Supported SSL standard algorithm. For details, see the Java official website.</p>
</td>
<td class="cellrowborder" valign="top" width="33.06%" headers="mcps1.3.2.6.2.5.1.3 "><p id="mrs_01_1569__p55963168403">The default value:</p>
<p id="mrs_01_1569__p8482419184020">"TLS_DHE_RSA_WITH_AES_128_GCM_SHA256,TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256,TLS_DHE_RSA_WITH_AES_256_GCM_SHA384,TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384"</p>
</td>
<td class="cellrowborder" valign="top" width="16.939999999999998%" headers="mcps1.3.2.6.2.5.1.4 "><p id="mrs_01_1569__a8d114a6572ac454fa89bb38b7850c21a">Yes</p>
</td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
<div>
<div class="familylinks">
<div class="parentlink"><strong>Parent topic:</strong> <a href="mrs_01_0592.html">Flink Configuration Management</a></div>
</div>
</div>