hadoop-common-issues mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Hadoop QA (JIRA)" <j...@apache.org>
Subject [jira] [Commented] (HADOOP-9446) Support Kerberos HTTP SPNEGO authentication for non-SUN JDK
Date Sat, 10 Aug 2013 05:33:50 GMT

    [ https://issues.apache.org/jira/browse/HADOOP-9446?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=13735766#comment-13735766
] 

Hadoop QA commented on HADOOP-9446:
-----------------------------------

{color:red}-1 overall{color}.  Here are the results of testing the latest attachment 
  http://issues.apache.org/jira/secure/attachment/12597256/TEST-org.apache.hadoop.security.authentication.server.TestKerberosAuthenticationHandler.xml
  against trunk revision .

    {color:red}-1 patch{color}.  The patch command could not apply the patch.

Console output: https://builds.apache.org/job/PreCommit-HADOOP-Build/2959//console

This message is automatically generated.
                
> Support Kerberos HTTP SPNEGO authentication for non-SUN JDK
> -----------------------------------------------------------
>
>                 Key: HADOOP-9446
>                 URL: https://issues.apache.org/jira/browse/HADOOP-9446
>             Project: Hadoop Common
>          Issue Type: Improvement
>          Components: security
>    Affects Versions: 1.1.1, 2.0.2-alpha
>            Reporter: Yu Gao
>            Assignee: Yu Gao
>         Attachments: HADOOP-9446-branch-2.patch, HADOOP-9446.patch, TestKerberosHttpSPNEGO.java,
TEST-org.apache.hadoop.security.authentication.client.TestKerberosAuthenticator.xml, TEST-org.apache.hadoop.security.authentication.server.TestKerberosAuthenticationHandler.xml
>
>
> Class KerberosAuthenticator and KerberosAuthenticationHandler currently only support
running with SUN JDK when Kerberos is enabled. In order to support  alternative JDKs like
IBM JDK which has different options supported by Krb5LoginModule and different login module
classes, the HTTP Kerberos authentication classes need to be changed.
> In addition, NT_GSS_KRB5_PRINCIPAL, which is used in KerberosAuthenticator to get the
corresponding oid instance, is a field defined in SUN JDK, but not in IBM JDK.
> This JIRA is to fix the existing problems and add support for Kerberos HTTP SPNEGO authentication
with non-SUN JDK.

--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators
For more information on JIRA, see: http://www.atlassian.com/software/jira

Mime
View raw message