Details
-
Improvement
-
Status: Closed
-
Major
-
Resolution: Fixed
-
3.0.0-alpha1
-
None
-
None
-
-
Reviewed
Description
The Key Management Server should support multiple Kerberos principals.
This is required for KMS multi instance setups behind a VIP. In such scenarios there must a principal with the VIP hostname and one with the actual hostname of the KMS instance. Regular users will use the VIP entry point, monitoring agents must hit a specific instance.
Attachments
Attachments
Issue Links
- is blocked by
-
HADOOP-11016 KMS should support signing cookies with zookeeper secret manager
- Closed
- is duplicated by
-
HADOOP-11018 KMS should load multiple kerberos principals
- Resolved