accumulo-notifications mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "William Slacum (JIRA)" <j...@apache.org>
Subject [jira] [Created] (ACCUMULO-4306) Support Kerberos authentication terminating at Accumulo
Date Mon, 09 May 2016 16:51:12 GMT
William Slacum created ACCUMULO-4306:
----------------------------------------

             Summary: Support Kerberos authentication terminating at Accumulo
                 Key: ACCUMULO-4306
                 URL: https://issues.apache.org/jira/browse/ACCUMULO-4306
             Project: Accumulo
          Issue Type: Improvement
            Reporter: William Slacum
            Assignee: William Slacum
             Fix For: 1.8.0


We currently support Kerberos authentication via SASL+GSSAPI. Due to an implementation detail,
turning it on requires also enabling Kerberos for HDFS.

This ticket proposes changing the implementation to avoid needing to turn on Kerberos authentication
for HDFS, but still (optionally) using it. Mostly, I think this boils down to replacing uses
of {{UserGroupInformation}} with {{Subject}} references. There are couple places (specifically
around creating delegation tokens for use with a Kerberos-enabled Hadoop cluster) where `UserGroupInformation`
may need to stick around.





--
This message was sent by Atlassian JIRA
(v6.3.4#6332)

Mime
View raw message