Details
-
Improvement
-
Status: Closed
-
Critical
-
Resolution: Fixed
-
0.13.1
-
None
Description
HiveServer2 does not map kerberos name of authenticated principal to local name.
Due to this, I get error like the following in HiveServer log:
Failed to validate proxy privilage of knox/hdps.example.com for sam
I have KINITED as knox/hdps.example.com@EXAMPLE.COM
I do have the following in core-site.xml
<property>
<name>hadoop.proxyuser.knox.groups</name>
<value>users</value>
</property>
<property>
<name>hadoop.proxyuser.knox.hosts</name>
<value>*</value>
</property>
Attachments
Attachments
Issue Links
- blocks
-
HIVE-8324 Shim KerberosName (causes build failure on hadoop-1)
- Closed
- links to