[ https://issues.apache.org/jira/browse/HDFS-13023?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16335182#comment-16335182 ]
Bharat Viswanadham commented on HDFS-13023: ------------------------------------------- {quote}1. Regarding checkstyle issue. {quote} versionID is used like below to get the version no in RPC.java to get versionField. Field versionField = protocol.getField("versionID"); versionField.getLong(protocol); So, i think we can ignore this checkstyle issue. {quote}2. Regarding testing {quote} The code has been tested on a kerberos cluster, after the fix, JournalNodeSync is working fine. Will create a follow up Jira for testing JournalNode test with kerberos. 3. Ran failed test cases locally, they are passing. > Journal Sync does not work on a secure cluster > ---------------------------------------------- > > Key: HDFS-13023 > URL: https://issues.apache.org/jira/browse/HDFS-13023 > Project: Hadoop HDFS > Issue Type: Bug > Reporter: Namit Maheshwari > Assignee: Bharat Viswanadham > Priority: Major > Attachments: HDFS-13023.00.patch, HDFS-13023.01.patch, > HDFS-13023.02.patch, HDFS-13023.03.patch > > > Fails with the following exception. > {code} > 2018-01-10 01:15:40,517 INFO server.JournalNodeSyncer > (JournalNodeSyncer.java:syncWithJournalAtIndex(235)) - Syncing Journal > /0.0.0.0:8485 with xxx, journal id: mycluster > 2018-01-10 01:15:40,583 ERROR server.JournalNodeSyncer > (JournalNodeSyncer.java:syncWithJournalAtIndex(259)) - Could not sync with > Journal at xxx/xxx:8485 > com.google.protobuf.ServiceException: > org.apache.hadoop.ipc.RemoteException(org.apache.hadoop.security.authorize.AuthorizationException): > User nn/xxx (auth:PROXY) via jn/xxx (auth:KERBEROS) is not authorized for > protocol interface org.apache.hadoop.hdfs.qjournal.protocol.QJournalProtocol: > this service is only accessible by nn/x...@example.com > at > org.apache.hadoop.ipc.ProtobufRpcEngine$Invoker.invoke(ProtobufRpcEngine.java:242) > at > org.apache.hadoop.ipc.ProtobufRpcEngine$Invoker.invoke(ProtobufRpcEngine.java:116) > at com.sun.proxy.$Proxy16.getEditLogManifest(Unknown Source) > at > org.apache.hadoop.hdfs.qjournal.server.JournalNodeSyncer.syncWithJournalAtIndex(JournalNodeSyncer.java:254) > at > org.apache.hadoop.hdfs.qjournal.server.JournalNodeSyncer.syncJournals(JournalNodeSyncer.java:230) > at > org.apache.hadoop.hdfs.qjournal.server.JournalNodeSyncer.lambda$startSyncJournalsDaemon$0(JournalNodeSyncer.java:190) > at java.lang.Thread.run(Thread.java:748) > Caused by: > org.apache.hadoop.ipc.RemoteException(org.apache.hadoop.security.authorize.AuthorizationException): > User nn/xxx (auth:PROXY) via jn/xxx (auth:KERBEROS) is not authorized for > protocol interface org.apache.hadoop.hdfs.qjournal.protocol.QJournalProtocol: > this service is only accessible by nn/xxx > at org.apache.hadoop.ipc.Client.getRpcResponse(Client.java:1491) > at org.apache.hadoop.ipc.Client.call(Client.java:1437) > at org.apache.hadoop.ipc.Client.call(Client.java:1347) > at > org.apache.hadoop.ipc.ProtobufRpcEngine$Invoker.invoke(ProtobufRpcEngine.java:228) > ... 6 more > {code} -- This message was sent by Atlassian JIRA (v7.6.3#76005) --------------------------------------------------------------------- To unsubscribe, e-mail: hdfs-issues-unsubscr...@hadoop.apache.org For additional commands, e-mail: hdfs-issues-h...@hadoop.apache.org