ambari-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Hari Sekhon (JIRA)" <>
Subject [jira] [Created] (AMBARI-8748) HDFS Rebalance Kerberos Support
Date Wed, 17 Dec 2014 10:12:13 GMT
Hari Sekhon created AMBARI-8748:

             Summary: HDFS Rebalance Kerberos Support
                 Key: AMBARI-8748
             Project: Ambari
          Issue Type: Improvement
    Affects Versions: 1.7.0
         Environment: HDP 2.1
            Reporter: Hari Sekhon
            Priority: Minor

Ambari's new HDFS Rebalance option doesn't work with Kerberos enabled on a cluster because
it doesn't obtain a TGT first.

Executing command ['su', '-', u'hdfs', '-c', u'export PATH=$PATH:/usr/bin ; hdfs --config
/etc/hadoop/conf balancer -threshold 1']
[balancer] 2014-12-17 09:57:17.124218 Time Stamp               Iteration#  Bytes Already Moved
 Bytes Left To Move  Bytes Being Moved
[balancer] 2014-12-17 09:57:18.001836 Failed on local exception: GSS initiate failed [Caused by GSSException: No valid credentials
provided (Mechanism level: Failed to find any Kerberos tgt)]; Host Details : local host is:
"<hostname>/x.x.x.x"; destination host is: "<hostname>":8020; .  Exiting ...

The workaround for this is simply to do
su - hdfs -c 'kinit -kt /etc/security/keytabs/hdfs.headless.keytab hdfs'

in shell before clicking the Web UI's Rebalance HDFS button.

Ambari should check if the cluster is kerberized and if so run the command {code}kinit -kt
/etc/security/keytabs/hdfs.headless.keytab hdfs{code} as hdfs just prior to starting the balancer.


Hari Sekhon

This message was sent by Atlassian JIRA

View raw message