Details
-
Bug
-
Status: Closed
-
Major
-
Resolution: Fixed
-
2.2.0
-
None
-
None
-
Reviewed
Description
org.apache.hadoop.security.LdapGroupsMapping allows specifying ldap connection password in a file using property key
hadoop.security.group.mapping.ldap.bind.password.file
The code in LdapGroupsMapping that reads the content of the password file does not trim the password value. This causes ldap connection failure as the password in the password file ends up having a trailing newline.
Most of the text editors and echo adds a new line at the end of file.
So, LdapGroupsMapping should trim the password read from the file.