ambari-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "David Tucker (JIRA)" <j...@apache.org>
Subject [jira] [Created] (AMBARI-14001) Encryption Types ineffective by default.
Date Fri, 20 Nov 2015 19:46:11 GMT
David Tucker created AMBARI-14001:
-------------------------------------

             Summary: Encryption Types ineffective by default.
                 Key: AMBARI-14001
                 URL: https://issues.apache.org/jira/browse/AMBARI-14001
             Project: Ambari
          Issue Type: Bug
          Components: security
    Affects Versions: 2.1.0
         Environment: HDP 2.3, 1 master, 5 slaves
            Reporter: David Tucker


While enabling Kerberos (in the Configure Kerberos tab, on the Advanced kerberos-env menu),
Encryption Types may be specified. Unfortunately, this setting has no effect unless the corresponding
values (default_tgs_enctypes and default_tkt_enctypes) are uncommented from the krb5.conf
file. If you forget this step, you cannot edit the conf file directly because Ambari will
overwrite your changes. Kerberos must be disabled in Ambari and re-enabled with the appropriate
key-value pairs uncommented.



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)

Mime
View raw message