William Slacum created ACCUMULO-4306:
----------------------------------------
Summary: Support Kerberos authentication terminating at Accumulo
Key: ACCUMULO-4306
URL: https://issues.apache.org/jira/browse/ACCUMULO-4306
Project: Accumulo
Issue Type: Improvement
Reporter: William Slacum
Assignee: William Slacum
Fix For: 1.8.0
We currently support Kerberos authentication via SASL+GSSAPI. Due to an
implementation detail, turning it on requires also enabling Kerberos for HDFS.
This ticket proposes changing the implementation to avoid needing to turn on
Kerberos authentication for HDFS, but still (optionally) using it. Mostly, I
think this boils down to replacing uses of {{UserGroupInformation}} with
{{Subject}} references. There are couple places (specifically around creating
delegation tokens for use with a Kerberos-enabled Hadoop cluster) where
`UserGroupInformation` may need to stick around.
--
This message was sent by Atlassian JIRA
(v6.3.4#6332)