| Mark Slee | 54b7ab9 | 2007-03-06 00:06:27 +0000 | [diff] [blame] | 1 | Thrift C++ Software Library |
| 2 | |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 3 | # License |
| Bryan Duxbury | def30a6 | 2009-04-08 00:19:37 +0000 | [diff] [blame] | 4 | |
| 5 | Licensed to the Apache Software Foundation (ASF) under one |
| 6 | or more contributor license agreements. See the NOTICE file |
| 7 | distributed with this work for additional information |
| 8 | regarding copyright ownership. The ASF licenses this file |
| 9 | to you under the Apache License, Version 2.0 (the |
| 10 | "License"); you may not use this file except in compliance |
| 11 | with the License. You may obtain a copy of the License at |
| 12 | |
| 13 | http://www.apache.org/licenses/LICENSE-2.0 |
| 14 | |
| 15 | Unless required by applicable law or agreed to in writing, |
| 16 | software distributed under the License is distributed on an |
| 17 | "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY |
| 18 | KIND, either express or implied. See the License for the |
| 19 | specific language governing permissions and limitations |
| 20 | under the License. |
| Mark Slee | 54b7ab9 | 2007-03-06 00:06:27 +0000 | [diff] [blame] | 21 | |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 22 | # Using Thrift with C++ |
| Mark Slee | 54b7ab9 | 2007-03-06 00:06:27 +0000 | [diff] [blame] | 23 | |
| 24 | The Thrift C++ libraries are built using the GNU tools. Follow the instructions |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 25 | in the top-level README.md |
| Mark Slee | 54b7ab9 | 2007-03-06 00:06:27 +0000 | [diff] [blame] | 26 | |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 27 | In case you do not want to open another README.md file, do this thrift src: |
| 28 | |
| 29 | ./bootstrap.sh |
| 30 | ./configure (--with-boost=/usr/local) |
| 31 | make |
| 32 | sudo make install |
| Mark Slee | 54b7ab9 | 2007-03-06 00:06:27 +0000 | [diff] [blame] | 33 | |
| 34 | Thrift is divided into two libraries. |
| 35 | |
| James E. King III | c9ac8d2 | 2019-01-07 16:46:45 -0500 | [diff] [blame] | 36 | * libthrift - The core Thrift library contains all the core Thrift code. This requires |
| 37 | openssl, pthreads, and librt. |
| Mark Slee | 54b7ab9 | 2007-03-06 00:06:27 +0000 | [diff] [blame] | 38 | |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 39 | * libthriftnb - This library contains the Thrift nonblocking server, which uses libevent. |
| Mark Slee | 54b7ab9 | 2007-03-06 00:06:27 +0000 | [diff] [blame] | 40 | To link this library you will also need to link libevent. |
| 41 | |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 42 | ## Linking Against Thrift |
| Mark Slee | 54b7ab9 | 2007-03-06 00:06:27 +0000 | [diff] [blame] | 43 | |
| 44 | After you build and install Thrift the libraries are installed to |
| 45 | /usr/local/lib by default. Make sure this is in your LDPATH. |
| 46 | |
| 47 | On Linux, the best way to do this is to ensure that /usr/local/lib is in |
| 48 | your /etc/ld.so.conf and then run /sbin/ldconfig. |
| 49 | |
| 50 | Depending upon whether you are linking dynamically or statically and how |
| 51 | your build environment it set up, you may need to include additional |
| 52 | libraries when linking against thrift, such as librt and/or libpthread. If |
| 53 | you are using libthriftnb you will also need libevent. |
| 54 | |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 55 | ## Dependencies |
| Mark Slee | 54b7ab9 | 2007-03-06 00:06:27 +0000 | [diff] [blame] | 56 | |
| James E. King III | c9ac8d2 | 2019-01-07 16:46:45 -0500 | [diff] [blame] | 57 | C++11 is required at a minimum. C++03/C++98 are not supported after version 0.12.0. |
| Mark Slee | 54b7ab9 | 2007-03-06 00:06:27 +0000 | [diff] [blame] | 58 | |
| James E. King III | c9ac8d2 | 2019-01-07 16:46:45 -0500 | [diff] [blame] | 59 | Boost is required to run the C++ unit tests. It is not necessary to link against |
| 60 | the runtime library. |
| 61 | |
| 62 | libevent (for libthriftnb only) - most linux distributions have dev packages for this: |
| Mark Slee | 54b7ab9 | 2007-03-06 00:06:27 +0000 | [diff] [blame] | 63 | http://monkey.org/~provos/libevent/ |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 64 | |
| 65 | # Using Thrift with C++ on Windows |
| 66 | |
| James E. King, III | 82ae957 | 2017-08-05 12:23:54 -0400 | [diff] [blame] | 67 | Both the autoconf and cmake build systems are able to automatically detect many |
| 68 | system configurations without the need to specify library locations, however if |
| 69 | you run into problems or want to redirect thrift to build and link against your |
| 70 | own provided third party libraries: |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 71 | |
| Roger Meier | faf52db | 2014-06-09 22:41:06 +0200 | [diff] [blame] | 72 | BOOST_ROOT : For boost, e.g. D:\boost_1_55_0 |
| 73 | OPENSSL_ROOT_DIR : For OpenSSL, e.g. D:\OpenSSL-Win32 |
| 74 | |
| 75 | only required by libthriftnb: |
| 76 | |
| 77 | LIBEVENT_ROOT_DIR : For Libevent e.g. D:\libevent-2.0.21-stable |
| 78 | |
| 79 | See /3rdparty.user for more details. |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 80 | |
| James E. King, III | 82ae957 | 2017-08-05 12:23:54 -0400 | [diff] [blame] | 81 | The same linking guidelines described above for libthriftnb apply to windows as well. |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 82 | |
| 83 | ## Linking Against Thrift |
| 84 | |
| 85 | You need to link your project that uses thrift against all the thrift |
| James E. King III | c9ac8d2 | 2019-01-07 16:46:45 -0500 | [diff] [blame] | 86 | dependencies; in the case of libthrift, openssl, pthreads, and librt and for |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 87 | libthriftnb, libevent. |
| 88 | |
| 89 | In the project properties you must also set HAVE_CONFIG_H as force include |
| James E. King III | c9ac8d2 | 2019-01-07 16:46:45 -0500 | [diff] [blame] | 90 | the config header: "windows/config.h" |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 91 | |
| 92 | ## Dependencies |
| 93 | |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 94 | libevent (for libthriftnb only) |
| 95 | http://monkey.org/~provos/libevent/ |
| 96 | |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 97 | ## Windows version compatibility |
| 98 | |
| 99 | The Thrift library targets Windows XP for broadest compatbility. A notable |
| 100 | difference is in the Windows-specific implementation of the socket poll |
| 101 | function. To target Vista, Win7 or other versions, comment out the line |
| 102 | |
| 103 | #define TARGET_WIN_XP. |
| 104 | |
| James E. King III | c9ac8d2 | 2019-01-07 16:46:45 -0500 | [diff] [blame] | 105 | See Apache Jira THRIFT-2798 for more about TARGET_WIN_XP. |
| 106 | |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 107 | ## Named Pipes |
| 108 | |
| 109 | Named Pipe transport has been added in the TPipe and TPipeServer classes. This |
| 110 | is currently Windows-only. Named pipe transport for *NIX has not been |
| 111 | implemented. Domain sockets are a better choice for local IPC under non-Windows |
| 112 | OS's. *NIX named pipes only support 1:1 client-server connection. |
| 113 | |
| 114 | # Thrift/SSL |
| 115 | |
| Roger Meier | 4fba9d2 | 2014-05-04 22:34:44 +0200 | [diff] [blame] | 116 | ## Scope |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 117 | |
| Roger Meier | 4fba9d2 | 2014-05-04 22:34:44 +0200 | [diff] [blame] | 118 | This SSL only supports blocking mode socket I/O. It can only be used with |
| 119 | TSimpleServer, TThreadedServer, and TThreadPoolServer. |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 120 | |
| Roger Meier | 4fba9d2 | 2014-05-04 22:34:44 +0200 | [diff] [blame] | 121 | ## Implementation |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 122 | |
| James E. King III | c9ac8d2 | 2019-01-07 16:46:45 -0500 | [diff] [blame] | 123 | There are two main classes TSSLSocketFactory and TSSLSocket. Instances of |
| Roger Meier | 4fba9d2 | 2014-05-04 22:34:44 +0200 | [diff] [blame] | 124 | TSSLSocket are always created from TSSLSocketFactory. |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 125 | |
| Roger Meier | 4fba9d2 | 2014-05-04 22:34:44 +0200 | [diff] [blame] | 126 | ## How to use SSL APIs |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 127 | |
| James E. King III | c9ac8d2 | 2019-01-07 16:46:45 -0500 | [diff] [blame] | 128 | See the TestClient.cpp and TestServer.cpp files for examples. |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 129 | |
| James E. King III | c9ac8d2 | 2019-01-07 16:46:45 -0500 | [diff] [blame] | 130 | ### AccessManager (certificate validation) |
| Roger Meier | 4fba9d2 | 2014-05-04 22:34:44 +0200 | [diff] [blame] | 131 | |
| James E. King III | c9ac8d2 | 2019-01-07 16:46:45 -0500 | [diff] [blame] | 132 | An example of certificate validation can be found in TestServer.cpp. |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 133 | |
| Roger Meier | 4fba9d2 | 2014-05-04 22:34:44 +0200 | [diff] [blame] | 134 | AccessManager defines a callback interface. It has three callback methods: |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 135 | |
| Roger Meier | 4fba9d2 | 2014-05-04 22:34:44 +0200 | [diff] [blame] | 136 | (a) Decision verify(const sockaddr_storage& sa); |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 137 | |
| Roger Meier | 4fba9d2 | 2014-05-04 22:34:44 +0200 | [diff] [blame] | 138 | (b) Decision verify(const string& host, const char* name, int size); |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 139 | |
| Roger Meier | 4fba9d2 | 2014-05-04 22:34:44 +0200 | [diff] [blame] | 140 | (c) Decision verify(const sockaddr_storage& sa, const char* data, int size); |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 141 | |
| Roger Meier | 4fba9d2 | 2014-05-04 22:34:44 +0200 | [diff] [blame] | 142 | After SSL handshake completes, additional checks are conducted. Application |
| 143 | is given the chance to decide whether or not to continue the conversation |
| 144 | with the remote. Application is queried through the above three "verify" |
| 145 | method. They are called at different points of the verification process. |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 146 | |
| Roger Meier | 4fba9d2 | 2014-05-04 22:34:44 +0200 | [diff] [blame] | 147 | Decisions can be one of ALLOW, DENY, and SKIP. ALLOW and DENY means the |
| 148 | conversation should be continued or disconnected, respectively. ALLOW and |
| 149 | DENY decision stops the verification process. SKIP means there's no decision |
| 150 | based on the given input, continue the verification process. |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 151 | |
| Roger Meier | 4fba9d2 | 2014-05-04 22:34:44 +0200 | [diff] [blame] | 152 | First, (a) is called with the remote IP. It is called once at the beginning. |
| 153 | "sa" is the IP address of the remote peer. |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 154 | |
| Roger Meier | 4fba9d2 | 2014-05-04 22:34:44 +0200 | [diff] [blame] | 155 | Then, the certificate of remote peer is loaded. SubjectAltName extensions |
| 156 | are extracted and sent to application for verification. When a DNS |
| 157 | subjectAltName field is extracted, (b) is called. When an IP subjectAltName |
| 158 | field is extracted, (c) is called. |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 159 | |
| Roger Meier | 4fba9d2 | 2014-05-04 22:34:44 +0200 | [diff] [blame] | 160 | The "host" in (b) is the value from TSocket::getHost() if this is a client |
| 161 | side socket, or TSocket::getPeerHost() if this is a server side socket. The |
| 162 | reason is client side socket initiates the connection. TSocket::getHost() |
| 163 | is the remote host name. On server side, the remote host name is unknown |
| 164 | unless it's retrieved through TSocket::getPeerHost(). Either way, "host" |
| 165 | should be the remote host name. Keep in mind, if TSocket::getPeerHost() |
| 166 | failed, it would return the remote host name in numeric format. |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 167 | |
| Roger Meier | 4fba9d2 | 2014-05-04 22:34:44 +0200 | [diff] [blame] | 168 | If all subjectAltName extensions were "skipped", the common name field would |
| 169 | be checked. It is sent to application through (c), where "sa" is the remote |
| 170 | IP address. "data" is the IP address extracted from subjectAltName IP |
| 171 | extension, and "size" is the length of the extension data. |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 172 | |
| Roger Meier | 4fba9d2 | 2014-05-04 22:34:44 +0200 | [diff] [blame] | 173 | If any of the above "verify" methods returned a decision ALLOW or DENY, the |
| 174 | verification process would be stopped. |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 175 | |
| Roger Meier | 4fba9d2 | 2014-05-04 22:34:44 +0200 | [diff] [blame] | 176 | If any of the above "verify" methods returned SKIP, that decision would be |
| 177 | ignored and the verification process would move on till the last item is |
| 178 | examined. At that point, if there's still no decision, the connection is |
| 179 | terminated. |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 180 | |
| Roger Meier | 4fba9d2 | 2014-05-04 22:34:44 +0200 | [diff] [blame] | 181 | Thread safety, an access manager should not store state information if it's |
| 182 | to be used by many SSL sockets. |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 183 | |
| Roger Meier | 4fba9d2 | 2014-05-04 22:34:44 +0200 | [diff] [blame] | 184 | ## SIGPIPE signal |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 185 | |
| Roger Meier | 4fba9d2 | 2014-05-04 22:34:44 +0200 | [diff] [blame] | 186 | Applications running OpenSSL over network connections may crash if SIGPIPE |
| 187 | is not ignored. This happens when they receive a connection reset by remote |
| 188 | peer exception, which somehow triggers a SIGPIPE signal. If not handled, |
| 189 | this signal would kill the application. |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 190 | |
| Roger Meier | 4fba9d2 | 2014-05-04 22:34:44 +0200 | [diff] [blame] | 191 | ## How to run test client/server in SSL mode |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 192 | |
| Roger Meier | 4fba9d2 | 2014-05-04 22:34:44 +0200 | [diff] [blame] | 193 | The server and client expects the followings from the directory /test/ |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 194 | |
| Roger Meier | 4fba9d2 | 2014-05-04 22:34:44 +0200 | [diff] [blame] | 195 | - keys/server.crt |
| 196 | - keys/server.key |
| 197 | - keys/CA.pem |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 198 | |
| Roger Meier | 4fba9d2 | 2014-05-04 22:34:44 +0200 | [diff] [blame] | 199 | The file names are hard coded in the source code. You need to create these |
| 200 | certificates before you can run the test code in SSL mode. Make sure at least |
| 201 | one of the followings is included in "keys/server.crt", |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 202 | |
| Roger Meier | 4fba9d2 | 2014-05-04 22:34:44 +0200 | [diff] [blame] | 203 | - subjectAltName, DNS localhost |
| 204 | - subjectAltName, IP 127.0.0.1 |
| 205 | - common name, localhost |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 206 | |
| Roger Meier | 4fba9d2 | 2014-05-04 22:34:44 +0200 | [diff] [blame] | 207 | Run within /test/ folder, |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 208 | |
| Roger Meier | 4fba9d2 | 2014-05-04 22:34:44 +0200 | [diff] [blame] | 209 | ./cpp/TestServer --ssl & |
| 210 | ./cpp/TestClient --ssl |
| Roger Meier | 6370cfd | 2014-05-04 22:21:58 +0200 | [diff] [blame] | 211 | |
| Roger Meier | 4fba9d2 | 2014-05-04 22:34:44 +0200 | [diff] [blame] | 212 | If "-h <host>" is used to run client, the above "localhost" in the above |
| 213 | keys/server.crt has to be replaced with that host name. |
| 214 | |
| 215 | ## TSSLSocketFactory::randomize() |
| 216 | |
| 217 | The default implementation of OpenSSLSocketFactory::randomize() simply calls |
| 218 | OpenSSL's RAND_poll() when OpenSSL library is first initialized. |
| 219 | |
| 220 | The PRNG seed is key to the application security. This method should be |
| 221 | overridden if it's not strong enough for you. |
| James E. King, III | 7bc9431 | 2017-03-31 21:25:20 -0400 | [diff] [blame] | 222 | |
| James E. King III | c9ac8d2 | 2019-01-07 16:46:45 -0500 | [diff] [blame] | 223 | # Deprecations |
| 224 | |
| 225 | ## 0.12.0 |
| 226 | |
| 227 | Support for C++03/C++98 was deprecated. |
| 228 | Support for Boost at runtime was deprecated. |
| 229 | |
| James E. King, III | 7bc9431 | 2017-03-31 21:25:20 -0400 | [diff] [blame] | 230 | # Breaking Changes |
| 231 | |
| James E. King III | c9ac8d2 | 2019-01-07 16:46:45 -0500 | [diff] [blame] | 232 | ## 1.0.0 |
| 233 | |
| James E. King III | 1735542 | 2019-01-11 23:06:08 -0500 | [diff] [blame^] | 234 | THRIFT-4720: |
| James E. King III | c9ac8d2 | 2019-01-07 16:46:45 -0500 | [diff] [blame] | 235 | Support for C++03/C++98 has been dropped. Use version 0.12.0 to support that |
| 236 | language level. As a consequence, boost is no longer required as a runtime |
| 237 | library depenedency, but is is still required to build the runtime library |
| 238 | and to run the unit tests. We will work towards removing boost as a |
| 239 | build dependency for folks who just want to build the runtime and not |
| 240 | run the tests. This means the header thrift/stdcxx.h has been removed and |
| 241 | anything that relied on it has been changed to directly use C++11 concepts. |
| 242 | |
| James E. King III | 1735542 | 2019-01-11 23:06:08 -0500 | [diff] [blame^] | 243 | THRIFT-4730: |
| James E. King III | c9ac8d2 | 2019-01-07 16:46:45 -0500 | [diff] [blame] | 244 | The classes BoostThreadFactory, PosixThreadFactory, StdThreadFactory, and |
| James E. King III | 278528c | 2019-01-11 12:17:44 -0500 | [diff] [blame] | 245 | PlatformThreadFactory have been removed, and we will use a ThreadFactory |
| 246 | based on C++11 (essentially StdThreadFactory was renamed ThreadFactory). |
| 247 | |
| James E. King III | 1735542 | 2019-01-11 23:06:08 -0500 | [diff] [blame^] | 248 | THRIFT-4732: |
| James E. King III | 278528c | 2019-01-11 12:17:44 -0500 | [diff] [blame] | 249 | The CMake build options WITH_SHARED_LIBS and WITH_STATIC_LIBS are deprecated. |
| 250 | The project no longer performs a side-by-side static and shared build; you |
| 251 | tell CMake through BUILD_SHARED_LIBS whether to make shared or static |
| 252 | libraries now. This is CMake standard behavior. |
| James E. King III | c9ac8d2 | 2019-01-07 16:46:45 -0500 | [diff] [blame] | 253 | |
| James E. King III | 1735542 | 2019-01-11 23:06:08 -0500 | [diff] [blame^] | 254 | THRIFT-4735: |
| 255 | Qt4 support was removed. |
| 256 | |
| James E. King, III | 7bc9431 | 2017-03-31 21:25:20 -0400 | [diff] [blame] | 257 | ## 0.11.0 |
| 258 | |
| James E. King, III | 82ae957 | 2017-08-05 12:23:54 -0400 | [diff] [blame] | 259 | Older versions of thrift depended on the <boost/smart_ptr.hpp> classes which |
| 260 | were used in thrift headers to define interfaces. Thrift now detects C++11 |
| 261 | at build time and will prefer to use <memory> classes from C++11 instead. |
| 262 | You can force the library to build with boost memory classes by defining the |
| 263 | preprocessor macro `FORCE_BOOST_SMART_PTR`. (THRIFT-2221) |
| 264 | |
| James E. King, III | 7bc9431 | 2017-03-31 21:25:20 -0400 | [diff] [blame] | 265 | In the pthread mutex implementation, the contention profiling code was enabled |
| 266 | by default in all builds. This changed to be disabled by default. (THRIFT-4151) |
| James E. King, III | 7f5a8c2 | 2017-04-04 09:36:38 -0400 | [diff] [blame] | 267 | |
| 268 | In older releases, if a TSSLSocketFactory's lifetime was not at least as long |
| 269 | as the TSSLSockets it created, we silently reverted openssl to unsafe multithread behavior |
| 270 | and so the results were undefined. Changes were made in 0.11.0 that cause either an |
| 271 | assertion or a core instead of undefined behavior. The lifetime of a TSSLSocketFactory |
| 272 | *must* be longer than any TSSLSocket that it creates, otherwise openssl will be cleaned |
| 273 | up too early. If the static boolean is set to disable openssl initialization and |
| 274 | cleanup and leave it up to the consuming application, this requirement is not needed. |
| 275 | (THRIFT-4164) |
| 276 | |