Details
-
New Feature
-
Status: Resolved
-
Major
-
Resolution: Won't Fix
-
Impala 2.12.0
-
None
-
ghx-label-1
Description
On deployments that use Heimdal kerberos configured with 'auth_to_local' rules set, and with the Impala startup flag 'use_kudu_kinit'= true, the auth_to_local rules will not be respected as it's not supported with Kudu's kinit.
The implication of this is that from Impala 2.12.0 onwards, clusters with the above configuration will not be able to use KRPC with kerberos enabled.
A workaround is to get rid of the auth_to_local rules for such deployments.
We need to have a good long term solution to fix this.
Attachments
There are no Sub-Tasks for this issue.