Skip to content

Issues: opensearch-project/security

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Author
Filter by author
Loading
Label
Filter by label
Loading
Use alt + click/return to exclude labels
or + click/return for logical OR
Projects
Filter by project
Loading
Milestones
Filter by milestone
Loading
Assignee
Filter by who’s assigned
Sort

Issues list

[BUG] Installing OpenSearch, the prompt "Unable to read the file root-ca.pem." appears. bug Something isn't working untriaged Require the attention of the repository maintainers and may need to be prioritized
#5015 opened Jan 10, 2025 by tianxin8206
[Question] Should resource-sharing information be stored on a dedicated index or on the resource index inside the documents? resource-permissions Label to track all items related to resource permissions untriaged Require the attention of the repository maintainers and may need to be prioritized
#5014 opened Jan 9, 2025 by DarshitChanpura
1 task
Deprecate and remove plugins.security.privileges_evaluation.use_legacy_impl feature flag enhancement New feature or request untriaged Require the attention of the repository maintainers and may need to be prioritized
#5013 opened Jan 8, 2025 by cwperks
[FEATURE] Support additional params in SecureTransportSettingsProvider to enable building of SslContext outside of security plugin enhancement New feature or request untriaged Require the attention of the repository maintainers and may need to be prioritized
#5011 opened Jan 6, 2025 by rishabhmaurya
[FEATURE] Automatically upgrade default security configs (static + reserved) on cluster upgrade enhancement New feature or request untriaged Require the attention of the repository maintainers and may need to be prioritized
#5010 opened Jan 6, 2025 by cwperks
CVE-2024-56128 (Medium) detected in kafka_2.13-3.7.1.jar Mend: dependency security vulnerability Security vulnerability detected by WhiteSource triaged Issues labeled as 'Triaged' have been reviewed and are deemed actionable.
#4988 opened Dec 23, 2024 by mend-for-github-com bot
1 task
[FEATURE] usage of JWKS with JWT (without using OpenID connect) enhancement New feature or request triaged Issues labeled as 'Triaged' have been reviewed and are deemed actionable.
#4974 opened Dec 17, 2024 by Rishav9852Kumar
[BUG] 2.18 requires both configs for PKCS setup plugins.security.ssl.transport.keystore_password and ...keystore_keypassword bug Something isn't working triaged Issues labeled as 'Triaged' have been reviewed and are deemed actionable.
#4961 opened Dec 9, 2024 by AntonEliatra
[BUG]Opensearch won't start if there are expired certificates in the CA bundle bug Something isn't working triaged Issues labeled as 'Triaged' have been reviewed and are deemed actionable.
#4949 opened Dec 4, 2024 by reshippie
[BUG] Current version of OpenSAML is incompatible with the Bouncy Castle FIPS library bug Something isn't working triaged Issues labeled as 'Triaged' have been reviewed and are deemed actionable.
#4915 opened Nov 18, 2024 by dancristiancecoi
[BUG] SAML auth is broken after upgrade from 2.11.0 to 2.18.0 bug Something isn't working
#4911 opened Nov 15, 2024 by timur-ND
[milestone] Use API Token Flow enhancement New feature or request triaged Issues labeled as 'Triaged' have been reviewed and are deemed actionable.
#4905 opened Nov 13, 2024 by derek-ho
[milestone] Revoke API Token Flow enhancement New feature or request
#4904 opened Nov 13, 2024 by derek-ho
[milestone] Create API Token flow enhancement New feature or request
#4903 opened Nov 13, 2024 by derek-ho
Authentication with PKCE enhancement New feature or request help wanted Community contributions are especially encouraged for these issues. triaged Issues labeled as 'Triaged' have been reviewed and are deemed actionable.
#4897 opened Nov 8, 2024 by gwintzer
[BUG] integTestRemote gradle task should produce a jacoco report bug Something isn't working triaged Issues labeled as 'Triaged' have been reviewed and are deemed actionable. v2.19.0 Issues targeting release v2.19.0
#4869 opened Nov 1, 2024 by cwperks
[RELEASE] Release version 2.19.0 triaged Issues labeled as 'Triaged' have been reviewed and are deemed actionable. v2.19.0 Issues targeting release v2.19.0
#4859 opened Oct 29, 2024 by opensearch-trigger-bot bot
23 tasks
[FEATURE] Create DenyList.yml enhancement New feature or request
#4842 opened Oct 24, 2024 by derek-ho
[BUG] SecurityRestFilter drops the headers from ThreadContext bug Something isn't working v2.18.0 Issues targeting release v2.18.0
#4799 opened Oct 8, 2024 by kaushalmahi12
[BUG] plugins.security.ssl.transport.enforce_hostname_verification marked as deprecated without documentation bug Something isn't working triaged Issues labeled as 'Triaged' have been reviewed and are deemed actionable. v3.0.0
#4780 opened Oct 7, 2024 by patrykmatys
ProTip! Add no:assignee to see everything that’s not assigned.