hadoop-hdfs-issues mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Harsh J (JIRA)" <j...@apache.org>
Subject [jira] [Resolved] (HDFS-7580) NN -> JN communication should use reusable authentication methods
Date Mon, 05 Jan 2015 06:49:35 GMT

     [ https://issues.apache.org/jira/browse/HDFS-7580?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel

Harsh J resolved HDFS-7580.
    Resolution: Invalid

Looking at the JDK sources there's no way to programmatically configure the KDC timeouts,
so resolving this as invalid as there's nothing we can really do at our end.

I'll just make a krb5.conf change.

> NN -> JN communication should use reusable authentication methods
> -----------------------------------------------------------------
>                 Key: HDFS-7580
>                 URL: https://issues.apache.org/jira/browse/HDFS-7580
>             Project: Hadoop HDFS
>          Issue Type: Improvement
>          Components: journal-node, namenode
>    Affects Versions: 2.5.0
>            Reporter: Harsh J
> It appears that NNs talk to JNs via general SaslRPC in secure mode, causing all requests
to be carried out with a kerberos authentication. This can cause delays and occasionally NN
failures if the KDC used does not respond in its default timeout period (30s, whereas the
QJM writes come with default of 20s).

This message was sent by Atlassian JIRA

View raw message