Uploaded image for project: 'Ambari'
  1. Ambari
  2. AMBARI-9852

Kerberos: Kerberos Service Check needs to generate and destroy it's own unique identity for testing

    XMLWordPrintableJSON

Details

    • Task
    • Status: Resolved
    • Major
    • Resolution: Fixed
    • 2.0.0
    • 2.0.0
    • ambari-server

    Description

      The Kerberos service check needs to generate it's own unique identity to use for testing and then destroy it when complete. This will ensure that any known identities (such as the smokeuser, usually ambari-qa) does not accidentally get removed if shared between clusters or if the service check is run after Kerberos is enabled.

      The service check must perform the following steps:

      1. Create a unique principal in the relevant KDC (server)
      2. Test that the principal can be used to authenticate via kinit (agent)
      3. Destroy the principal (server)

      Attachments

        1. AMBARI-9852_01.patch
          70 kB
          Robert Levas

        Issue Links

          Activity

            People

              rlevas Robert Levas
              rlevas Robert Levas
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: