[ 
https://issues.apache.org/jira/browse/KYLIN-1014?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=14734104#comment-14734104
 ] 

Shaofeng SHI edited comment on KYLIN-1014 at 9/8/15 1:28 AM:
-------------------------------------------------------------

In eBay we also use Kerberos authentication; firstly, the Linux user to startup 
Kylin need be the same user to get Kerberos authenticated; secondly we have a 
cron jobs to  run kinit every couple hours before the token is expired;  Then 
in Kylin we don't need extra action about hadoop security; But if your patch 
can automate it, that would be good; 


was (Author: shaofengshi):
In eBay we also use Kerbose authentication; firstly, the Linux user to startup 
Kylin need be the same user to get Kerbose authenticated; secondly we have a 
cron jobs to  run kinit every couple hours before the token is expired;  Then 
in Kylin we don't need extra action about hadoop security; But if your patch 
can automate it, that would be good; 

> patch for supporting kerberos authentication while getting status from RM
> -------------------------------------------------------------------------
>
>                 Key: KYLIN-1014
>                 URL: https://issues.apache.org/jira/browse/KYLIN-1014
>             Project: Kylin
>          Issue Type: Bug
>            Reporter: fengYu
>         Attachments: 0001-kerberos.patch
>
>
> I have used kylin-0.7.2 build cube and do some query, and I am trying 
> kylin-1.0 in another hadoop cluster. I get this problem below in kylin-0.7.2 
> and kylin-1.0 :
> Our hadoop cluster deals with authentication with kerberos, However, We find 
> after submit a mapreduce job(the second step in building cube), kylin will 
> send a http request to RM server and get the job status at regular intervals, 
> But we always get errors here because kylin do nothing about kerberos. 
> Finally , we do some change on source code and make it support kerberos 
> authentication . attachment is my patch file..
> I add a property named "kylin.job.status.with.kerberos" which means if we 
> need do authentication with kerberos when getting status from RM, the default 
> value is false.
> It will be highly appreciated if you have some good idea or some suggestion. 
> Thanks...



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)

Reply via email to