falcon-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From Samarth Gupta <samarthgupta...@gmail.com>
Subject Re: Permission denied when submiting processes
Date Wed, 17 Sep 2014 19:15:49 GMT
one needs to have proxy user setting in oozie-site and hadoop core-site. I
think that might be the issue here.

The user who is running falcon , should be present as proxy user in
oozie-site.
The core-site should have user running falcon and user running oozie as
proxy users.


On Thu, Sep 18, 2014 at 12:26 AM, Peng Zhang <
pengzhang@yahoo-inc.com.invalid> wrote:

> Hi Falcon Devs,
>
> I try to submit a process from one cluster and the oozie server is on the
> other cluster. When I submit it, I got such an error.
> Bad Request;org.apache.hadoop.security.AccessControlException:
> Permission denied: user=pengzhang, access=WRITE,
> inode="/":hdfsqa:hdfs:drwxr-xr-x.
> Do you have any idea that I can fix the problem? Looking forward for you
> reply!
>
> Thanks,
> Peng
> -----------------------------------------------------log
> info-----------------------------------------------------
>
> bin/falcon entity -submitAndSchedule -type process -file
> examples/entity/filesystem/oozie-process1.xml
> Error: Bad Request;org.apache.hadoop.security.AccessControlException:
> Permission denied: user=pengzhang, access=WRITE,
> inode="/":hdfsqa:hdfs:drwxr-xr-x
>     at
> org.apache.hadoop.hdfs.server.namenode.FSPermissionChecker.checkFsPermission(FSPermissionChecker.java:271)
>     at
> org.apache.hadoop.hdfs.server.namenode.FSPermissionChecker.check(FSPermissionChecker.java:257)
>     at
> org.apache.hadoop.hdfs.server.namenode.FSPermissionChecker.check(FSPermissionChecker.java:238)
>     at
> org.apache.hadoop.hdfs.server.namenode.FSPermissionChecker.checkPermission(FSPermissionChecker.java:179)
>     at
> org.apache.hadoop.hdfs.server.namenode.FSNamesystem.checkPermission(FSNamesystem.java:5926)
>     at
> org.apache.hadoop.hdfs.server.namenode.FSNamesystem.checkPermission(FSNamesystem.java:5908)
>     at
> org.apache.hadoop.hdfs.server.namenode.FSNamesystem.checkAncestorAccess(FSNamesystem.java:5882)
>     at
> org.apache.hadoop.hdfs.server.namenode.FSNamesystem.mkdirsInternal(FSNamesystem.java:3792)
>     at
> org.apache.hadoop.hdfs.server.namenode.FSNamesystem.mkdirsInt(FSNamesystem.java:3762)
>     at
> org.apache.hadoop.hdfs.server.namenode.FSNamesystem.mkdirs(FSNamesystem.java:3736)
>     at
> org.apache.hadoop.hdfs.server.namenode.NameNodeRpcServer.mkdirs(NameNodeRpcServer.java:778)
>     at
> org.apache.hadoop.hdfs.protocolPB.ClientNamenodeProtocolServerSideTranslatorPB.mkdirs(ClientNamenodeProtocolServerSideTranslatorPB.java:573)
>     at
> org.apache.hadoop.hdfs.protocol.proto.ClientNamenodeProtocolProtos$ClientNamenodeProtocol$2.callBlockingMethod(ClientNamenodeProtocolProtos.java)
>     at
> org.apache.hadoop.ipc.ProtobufRpcEngine$Server$ProtoBufRpcInvoker.call(ProtobufRpcEngine.java:585)
>     at org.apache.hadoop.ipc.RPC$Server.call(RPC.java:928)
>     at org.apache.hadoop.ipc.Server$Handler$1.run(Server.java:2013)
>     at org.apache.hadoop.ipc.Server$Handler$1.run(Server.java:2009)
>     at java.security.AccessController.doPrivileged(Native Method)
>     at javax.security.auth.Subject.doAs(Subject.java:415)
>     at
> org.apache.hadoop.security.UserGroupInformation.doAs(UserGroupInformation.java:1637)
>     at org.apache.hadoop.ipc.Server$Handler.run(Server.java:2007)

Mime
  • Unnamed multipart/alternative (inline, None, 0 bytes)
View raw message