William Slacum created ACCUMULO-4306:
----------------------------------------

             Summary: Support Kerberos authentication terminating at Accumulo
                 Key: ACCUMULO-4306
                 URL: https://issues.apache.org/jira/browse/ACCUMULO-4306
             Project: Accumulo
          Issue Type: Improvement
            Reporter: William Slacum
            Assignee: William Slacum
             Fix For: 1.8.0


We currently support Kerberos authentication via SASL+GSSAPI. Due to an 
implementation detail, turning it on requires also enabling Kerberos for HDFS.

This ticket proposes changing the implementation to avoid needing to turn on 
Kerberos authentication for HDFS, but still (optionally) using it. Mostly, I 
think this boils down to replacing uses of {{UserGroupInformation}} with 
{{Subject}} references. There are couple places (specifically around creating 
delegation tokens for use with a Kerberos-enabled Hadoop cluster) where 
`UserGroupInformation` may need to stick around.





--
This message was sent by Atlassian JIRA
(v6.3.4#6332)

Reply via email to