[ 
https://issues.apache.org/jira/browse/RANGER-1847?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16212232#comment-16212232
 ] 

Ronald van de Kuil commented on RANGER-1847:
--------------------------------------------

[2017-10-14 13:16:51,905] INFO Default UGI before using new Subject:root 
(auth:SIMPLE) (org.apache.ranger.audit.provider.MiscUtil)
[2017-10-14 13:16:51,905] ERROR Error getting principal. 
(org.apache.ranger.authorization.kafka.authorizer.RangerKafkaAuthorizer)
java.io.IOException: Provided Subject must contain a KerberosPrincipal
        at 
org.apache.hadoop.security.UserGroupInformation.getUGIFromSubject(UserGroupInformation.java:735)
        at 
org.apache.ranger.audit.provider.MiscUtil.createUGIFromSubject(MiscUtil.java:457)
        at 
org.apache.ranger.authorization.kafka.authorizer.RangerKafkaAuthorizer.configure(RangerKafkaAuthorizer.java:85)
        at 
org.apache.ranger.authorization.kafka.authorizer.RangerKafkaAuthorizer.configure(RangerKafkaAuthorizer.java:96)
        at 
kafka.server.KafkaServer$$anonfun$startup$3.apply(KafkaServer.scala:209)
        at 
kafka.server.KafkaServer$$anonfun$startup$3.apply(KafkaServer.scala:207)
        at scala.Option.map(Option.scala:145)
        at kafka.server.KafkaServer.startup(KafkaServer.scala:207)
        at 
kafka.server.KafkaServerStartable.startup(KafkaServerStartable.scala:37)
        at kafka.Kafka$.main(Kafka.scala:67)
        at kafka.Kafka.main(Kafka.scala)

> Ranger Kafka Plugin sasl.enabled.mechanisms=PLAIN
> -------------------------------------------------
>
>                 Key: RANGER-1847
>                 URL: https://issues.apache.org/jira/browse/RANGER-1847
>             Project: Ranger
>          Issue Type: Test
>          Components: plugins
>    Affects Versions: 0.6.3, 0.7.1
>         Environment: ubuntu stand-alone hobby environment
>            Reporter: Ronald van de Kuil
>            Priority: Minor
>
> I am such a NOOB hobby-ing away. And I like it. ;)
> I figured I would give it a try to setup Kafka to use the 
> sasl.enabled.mechanisms of type PLAIN with ranger to do the authorisation and 
> the auditing (instead of GSSAPI).
> I got it to work pretty far. KafkaServer gets into state SaslAuthenticated 
> with Zookeeper. 
> Next it loads the ranger kafka plugin. Then the RangerKafkaAuthorizer 
> complains about Kerberos. 
> I am not sure how to classify this issue. 



--
This message was sent by Atlassian JIRA
(v6.4.14#64029)

Reply via email to