-
Notifications
You must be signed in to change notification settings - Fork 83
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
fix: fix connecting to clickhouse from edge servers #2128
Conversation
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
PR Summary
Implements TLS support for ClickHouse connections from edge servers with a temporary certificate validation bypass.
- Added
tokio-native-tls
dependency inpackages/common/pools/Cargo.toml
for TLS connection handling - Modified
packages/common/pools/src/db/clickhouse.rs
to use custom TLS configuration withdanger_accept_invalid_certs
(temporary fix for RVT-4649) - Potential security concern: Using
unwrap()
on TLS builder could cause runtime panics - Security risk: Accepting invalid certificates needs to be addressed before production deployment
2 file(s) reviewed, 1 comment(s)
Edit PR Review Bot Settings | Greptile
.build() | ||
.unwrap(); |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
logic: Replace unwrap() with proper error handling to prevent potential panics
.build() | |
.unwrap(); | |
.build() | |
.map_err(|e| Error::Global(Box::new(e)))?; |
Deploying rivet-hub with
|
Latest commit: |
794228f
|
Status: | ✅ Deploy successful! |
Preview URL: | https://21e7a95e.rivet-hub-7jb.pages.dev |
Branch Preview URL: | https://03-06-fix-fix-connecting-to.rivet-hub-7jb.pages.dev |
Merge activity
|
Fixes RVT-4647