Uploaded image for project: 'IMPALA'
  1. IMPALA
  2. IMPALA-2660

Respect auth_to_local rules from hdfs configs (core-site.xml)

    Details

    • Type: Improvement
    • Status: Resolved
    • Priority: Critical
    • Resolution: Fixed
    • Affects Version/s: Impala 2.2.4, Impala 2.3.0
    • Fix Version/s: Impala 2.6.0, Impala 2.5.2
    • Component/s: Security
    • Labels:

      Description

      I defined the following rules:

      auth_to_local = RULE:[1:$1@$0](ericlin@HADOOP)s/.*/eric/
      auth_to_local = DEFAULT
      

      in both krb5.conf on the impala daemon host as well as "Additional Rules to Map Kerberos Principals to Short Names" HDFS configuration in CM, impala daemon seems to ignore those rules from both places.

      It would be good to get this fixed as it makes behaviour inconsistent between HS2 and Impala.

      I think that auth_to_local_names is also ignored.

        Attachments

          Issue Links

            Activity

              People

              • Assignee:
                bharathv bharath v
                Reporter:
                ericlin Eric Lin
              • Votes:
                2 Vote for this issue
                Watchers:
                10 Start watching this issue

                Dates

                • Created:
                  Updated:
                  Resolved: