Details
-
Improvement
-
Status: Resolved
-
Major
-
Resolution: Won't Fix
-
2.7.1
-
None
-
None
-
Reviewed
Description
When the NM launches an AM, the ContainerLocalizer gets the current user from UserGroupInformation, which triggers user group mapping, even though the user groups are never accessed. If secure LDAP is configured for group mapping, then there are some additional complications created by the unnecessary group resolution. Additionally, it adds unnecessary latency to the container launch time.
To address the issue, before getting the current user, the ContainerLocalizer should configure UserGroupInformation with a null group mapping service that quickly and quietly returns an empty group list for all users.
Attachments
Attachments
Issue Links
- is blocked by
-
HADOOP-12566 Add NullGroupMapping
- Resolved