Details
-
Bug
-
Status: Resolved
-
Blocker
-
Resolution: Fixed
-
2.1.0
-
None
Description
Storm cannot dynamically translate Kerberos principal names to local account ids using common auth-to-local rules. It can only strip the realm portion of the principal and use that value as the local user id. Because of this, automatically adding the cluster name to the principal name of the Storm user Kerberos Identity will lead to issues for Storm. Therefore the default behavior for generating the Storm user's Kerberos should be to use the storm-env/storm_user value.
Attachments
Attachments
Issue Links
- links to