Skip to content

docs: enable TLS in the ScyllaDB Cloud connection example - #1163

Merged
dkropachev merged 1 commit into
scylladb:scylla-4.xfrom
nikagra:docs-vpc-tls-example
Oct 1, 2026
Merged

dkropachev merged 1 commit into
scylladb:scylla-4.xfrom
nikagra:docs-vpc-tls-example

Conversation

@nikagra

@nikagra nikagra commented Sep 30, 2026 •

Copy link
Copy Markdown

Depends on: nothing
Blocks: nothing; reaches /stable/ on the next fast-forward of scylla-4.19.2.x. #1143 (4.19.0.x) and #1144 (4.18.1.x) get the same change

The VPC-peering page's Java example connects to 9142, the TLS port, but enables no TLS; the truststore setup comes only afterwards, as a HOCON block. Copied as shown, the example fails during connection setup. dkropachev found this on #1143; the same example is on scylla-4.x.

  • configure DefaultSslEngineFactory and the truststore in the builder, with DriverConfigLoader.programmaticBuilder(), using the same three options as the HOCON block
  • move the truststore import before the example and pass -storepass to it, so its password matches the one the example uses (CodeRabbit on docs: add the connectivity section to the 4.19.0 manual #1143); keep the HOCON block as the application.conf alternative

Verified:

  • compiled the documented builder chain against driver-core 4.18.1.0, 4.19.0.9 and 4.19.2.1, and built a DefaultDriverContext from the documented loader with a real truststore: every version yields DefaultSslEngineFactory, while the old example's default config yields no SSL engine factory. The documented keytool command, run as written, produces a truststore the loader opens
  • make -C docs test (-W) succeeds

Not covered: a handshake against a real ScyllaDB Cloud cluster.

🤖 Generated with Claude Code

@coderabbitai

coderabbitai Bot commented Sep 30, 2026 •

Copy link
Copy Markdown

Warning

Review limit reached

You've used all free OSS reviews for now. Wait for the free limit to reset to keep reviewing this public repository.

Next included review available in 37 minutes.

Check out review usage here.

View limit details

Limit details: You’ve used the included review currently available.

Learn how review limits work.

Review configuration:

⚙️ Run configuration

Configuration used: Organization UI

Review profile: QUIET

Plan: Advanced

Run ID: 6aa6c115-3fd2-4a93-ac6d-7734faab152b

📥 Commits

Reviewing files that changed from the base of the PR and between 54432a5 and a8f9041.

📒 Files selected for processing (1)
  • manual/core/connectivity/vpc_peering/README.md
  • Autopilot · Keep fixing CodeRabbit findings and required CI, and resolving merge conflicts

Autopilot is currently an internal CodeRabbit preview.


Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out.

❤️ Share

Comment @coderabbitai help to get the list of available commands.

The example connected to 9142, the TLS port, without enabling TLS, and
the truststore setup came only afterwards as a HOCON block, so the code
copied as shown fails to connect. Configure the engine factory in the
builder and keep the HOCON block as the application.conf alternative.

Co-Authored-By: Claude Opus 5.5 (1M context) <[email protected]>
@dkropachev
dkropachev merged commit 6e93e22 into scylladb:scylla-4.x Oct 1, 2026
27 of 28 checks passed
@nikagra
nikagra deleted the docs-vpc-tls-example branch October 1, 2026 13:50
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants