ambari-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Robert Levas (JIRA)" <>
Subject [jira] [Created] (AMBARI-13292) Kerberos: Retain KDC admin credentials
Date Thu, 01 Oct 2015 20:32:27 GMT
Robert Levas created AMBARI-13292:

             Summary: Kerberos: Retain KDC admin credentials
                 Key: AMBARI-13292
             Project: Ambari
          Issue Type: Bug
          Components: ambari-server
    Affects Versions: 2.1.3
            Reporter: Robert Levas
            Assignee: Robert Levas
             Fix For: 2.1.3

Enhance the Kerberos backend to allow for the retention of KDC administrative credentials.
 Once securely stored, users may opt to remove the stored credentials.  

See AMBARI-13214 for information on the relevant API calls. 

The alias name for the KDC administrator credential should be "kdc.administrator.credential"

For example:

*Create Credential Resource*
POST /api/v1/clusters/{CLUSTER_NAME}/credentials/kdc.administrator.credential
  "Credential" : {
    "principal" : "admin/admin@EXAMPLE.COM",
    "key" : "h4d00p&!",
    "type" : "persisted"

*Update Credential Resource*
PUT /api/v1/clusters/{CLUSTER_NAME}/credentials/kdc.administrator.credential
  "Credential" : {
    "key" : "newpassword",
    "type" : "temporary"

*Get Credential Resource*
GET /api/v1/clusters/{CLUSTER_NAME}/credentials/kdc.administrator.credential

*Delete Credential Resource*
DELETE /api/v1/clusters/{CLUSTER_NAME}/credentials/kdc.administrator.credential

This message was sent by Atlassian JIRA

View raw message