hadoop-common-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Kan Zhang (JIRA)" <j...@apache.org>
Subject [jira] Created: (HADOOP-6632) Support for using different Kerberos keys for different instances of Hadoop services
Date Sun, 14 Mar 2010 04:29:27 GMT
Support for using different Kerberos keys for different instances of Hadoop services
------------------------------------------------------------------------------------

                 Key: HADOOP-6632
                 URL: https://issues.apache.org/jira/browse/HADOOP-6632
             Project: Hadoop Common
          Issue Type: Improvement
            Reporter: Kan Zhang
            Assignee: Kan Zhang


We tested using the same Kerberos key for all datanodes in a HDFS cluster or the same Kerberos
key for all TaskTarckers in a MapRed cluster. But it doesn't work. The reason is that when
datanodes try to authenticate to the namenode all at once, the Kerberos authenticators they
send to the namenode may have the same timestamp and will be rejected as replay requests.
This JIRA makes it possible to use a unique key for each service instance.

-- 
This message is automatically generated by JIRA.
-
You can reply to this email to add a comment to the issue online.


Mime
View raw message