Details
-
Bug
-
Status: Closed
-
Major
-
Resolution: Fixed
-
1.1.0, 2.0.2-alpha
-
None
-
None
-
Reviewed
Description
This is similar to HDFS-3466 where we made sure the namenode checks for the web keytab before it uses the namenode keytab.
The same needs to be done for secondary namenode as well.
String httpKeytab = conf.get(DFSConfigKeys.DFS_SECONDARY_NAMENODE_KEYTAB_FILE_KEY); if (httpKeytab != null && !httpKeytab.isEmpty()) { params.put("kerberos.keytab", httpKeytab); }
Attachments
Attachments
Issue Links
- relates to
-
HDFS-4540 namenode http server should use the web authentication keytab for spnego principal
- Closed