ambari-issues mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Masahiro Tanaka (JIRA)" <j...@apache.org>
Subject [jira] [Updated] (AMBARI-22434) Ranger KMS HA setup wizard automatically puts incorrect settings
Date Tue, 14 Nov 2017 00:40:02 GMT

     [ https://issues.apache.org/jira/browse/AMBARI-22434?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]

Masahiro Tanaka updated AMBARI-22434:
-------------------------------------
    Description: 
Ambari adds the Ranger KMS HA releated settings automatically by AMBARI-20569, but the settings
which are added are not correct.

* hadoop.kms.authentication.signer.secret.provider.zookeeper.connection.string should be ZooKeeper
ensemble, not ranger hostnames
* hadoop.kms.authentication.signer.secret.provider.zookeeper.auth.type should be 'sasl' when
using Kerberized Hadoop

  was:
Ambari adds the Ranger KMS HA releated settings automatically by AMBARI-20569, but the settings
which are added are not correct.

* hadoop.kms.authentication.signer.secret.provider.zookeeper.connection.string should be ZooKeeper
ensemble, not ranger hostnames
* hadoop.kms.authentication.signer.secret.provider.zookeeper.auth.type should not be 'sasl'
when using Kerberized Hadoop


> Ranger KMS HA setup wizard automatically puts incorrect settings
> ----------------------------------------------------------------
>
>                 Key: AMBARI-22434
>                 URL: https://issues.apache.org/jira/browse/AMBARI-22434
>             Project: Ambari
>          Issue Type: Bug
>         Environment: CentOS7.3, Ambari 2.5.2
>            Reporter: Masahiro Tanaka
>            Assignee: Masahiro Tanaka
>
> Ambari adds the Ranger KMS HA releated settings automatically by AMBARI-20569, but the
settings which are added are not correct.
> * hadoop.kms.authentication.signer.secret.provider.zookeeper.connection.string should
be ZooKeeper ensemble, not ranger hostnames
> * hadoop.kms.authentication.signer.secret.provider.zookeeper.auth.type should be 'sasl'
when using Kerberized Hadoop



--
This message was sent by Atlassian JIRA
(v6.4.14#64029)

Mime
View raw message