Uploaded image for project: 'Hadoop Common'
  1. Hadoop Common
  2. HADOOP-15995

Add ldap.bind.password.alias in LdapGroupsMapping to distinguish aliases when using multiple providers through CompositeGroupsMapping

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Resolved
    • Major
    • Resolution: Fixed
    • None
    • 3.3.0
    • common
    • None

    Description

      Currently, the property name hadoop.security.group.mapping.ldap.bind.password is used as an alias to get password from CredentialProviders. This has a big issue, which is that when we configure multiple LdapGroupsMapping providers through CompositeGroupsMapping, they will all have the same alias, and won't be able to be distinguished.

      Attachments

        1. HADOOP-15995.001.patch
          4 kB
          Lukas Majercak
        2. HADOOP-15995.002.patch
          5 kB
          Lukas Majercak
        3. HADOOP-15995.003.patch
          6 kB
          Lukas Majercak
        4. HADOOP-15995.004.patch
          6 kB
          Lukas Majercak
        5. HADOOP-15995.005.patch
          6 kB
          Lukas Majercak
        6. HADOOP-15995.006.patch
          6 kB
          Lukas Majercak
        7. HADOOP-15995.007.patch
          6 kB
          Lukas Majercak

        Activity

          People

            lukmajercak Lukas Majercak
            lukmajercak Lukas Majercak
            Votes:
            0 Vote for this issue
            Watchers:
            7 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: