Repository navigation
[xpack/encryptionKeys] use default keys when running from source - #36452
Conversation
|
Pinging @elastic/kibana-operations |
|
Would it be possible to add a test that ensures the encryptionKey is not set in a distribution? |
|
Yeah, I think I can unit test the config schema. It's not a perfect test but as long as we don't change the name of the |
This comment has been minimized.
This comment has been minimized.
|
Quick question/confirmation: |
Correct
Not quite, I think it might even be possible to pass |
💚 Build Succeeded |
|
Thanks for the clarification @spalger! My LGTM stands 😄 |
…stic#36452) * [xpack/encryptionKeys] use default keys when running from source * add tests for the config schema with different contexts * share the getConfigSchema helper * await promises returned by expect().resolves * tweak test naming * use data-driven tests * fix type error * hide platform dependent config from snapshot
#36452) (#36461) * [xpack/encryptionKeys] use default keys when running from source * add tests for the config schema with different contexts * share the getConfigSchema helper * await promises returned by expect().resolves * tweak test naming * use data-driven tests * fix type error * hide platform dependent config from snapshot
|
7.x/7.2: f7a8b33 |
…stic#36452) * [xpack/encryptionKeys] use default keys when running from source * add tests for the config schema with different contexts * share the getConfigSchema helper * await promises returned by expect().resolves * tweak test naming * use data-driven tests * fix type error * hide platform dependent config from snapshot
Part of #36446
Now that security is on by default, I think we might have worsened the developer experience a little bit as described by #36446 (comment)
I think we should aim for automatic behavior of the server during development to be as friendly as possible, and automatically logging users out every time they change server-side code doesn't seem very friendly to me.
I think we should default the different
encryptionKeyconfigs in x-pack based on thedistflag in the config context. This flag is true in built versions of Kibana and false when running from source.cc: @elastic/kibana-security @elastic/kibana-platform