Details
-
Improvement
-
Status: Open
-
Major
-
Resolution: Unresolved
-
1.2.4
-
None
-
None
Description
The HBase web UI is none secure by default, there is only one StaticUserWebFilter for a fake user.
For Hadoop, we already have AuthenticationFilter for web authentication based on token or kerberos. So I think hbase can reuse the hadoop-auth AuthenticationFilter by adding a HadoopAuthFilterInitializer.