Uploaded image for project: 'Hadoop HDFS'
  1. Hadoop HDFS
  2. HDFS-12372

Document the impact of HDFS-11069 (Tighten the authorization of datanode RPC)

    XMLWordPrintableJSON

Details

    • Improvement
    • Status: Open
    • Major
    • Resolution: Unresolved
    • 2.8.0, 2.9.0, 2.7.4, 3.0.0-alpha2
    • None
    • None
    • None

    Description

      The idea of HDFS-11069 is good. But it seems to cause confusion for administrators when they issue commands like hdfs diskbalancer, or hdfs dfsadmin, because this change of behavior is not documented properly.

      I suggest we document a recommended way to kinit (e.g. kinit as hdfs/host1@host1.EXAMPLE.COM, rather than hdfs@EXAMPLE.COM), as well as documenting a notice for running privileged DataNode commands in a Kerberized clusters

      Attachments

        Issue Links

          Activity

            People

              weichiu Wei-Chiu Chuang
              weichiu Wei-Chiu Chuang
              Votes:
              0 Vote for this issue
              Watchers:
              6 Start watching this issue

              Dates

                Created:
                Updated: