[ 
https://issues.apache.org/jira/browse/HIVE-842?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=12924034#action_12924034
 ] 

Todd Lipcon commented on HIVE-842:
----------------------------------

Hey Pradeep. Those changes seem reasonable. I'm not personally a fan of the 
"login user" concept in Hadoop security - it's static state, which prevents 
servers which may want to use multiple principals from doing so easily (eg if 
running a hive server with an embedded metastore, you may need a different 
principal for the two different pieces). But given that there is no "renewer" 
thread for non-loginuser keytab logins, it may be the only choice for now.

> Authentication Infrastructure for Hive
> --------------------------------------
>
>                 Key: HIVE-842
>                 URL: https://issues.apache.org/jira/browse/HIVE-842
>             Project: Hive
>          Issue Type: New Feature
>          Components: Server Infrastructure
>            Reporter: Edward Capriolo
>            Assignee: Todd Lipcon
>         Attachments: hive-842.txt, HiveSecurityThoughts.pdf
>
>
> This issue deals with the authentication (user name,password) infrastructure. 
> Not the authorization components that specify what a user should be able to 
> do.

-- 
This message is automatically generated by JIRA.
-
You can reply to this email to add a comment to the issue online.

Reply via email to