Quantcast
Channel: Hortonworks » All Replies
Viewing all articles
Browse latest Browse all 3435

Reply To: HDP 2.2 Sandbox Kerberos with Hiveserver JDBC

$
0
0

I followed the following guide.. upto ldap
https://github.com/abajwa-hw/security-workshops/blob/master/Setup-kerberos-LDAP.md

1) ls -la /etc/security/keytabs/hive*

All keytabs:
[ec2-user@ip-172-30-0-107 ~]$ ls -la /etc/security/keytabs/
total 88
drwxr-xr-x 2 root hadoop 4096 Oct 22 02:25 .
drwxr-xr-x. 7 root root 4096 Oct 14 14:11 ..
-r——– 1 root hadoop 194 Oct 22 02:23 ambari.server.keytab
-r——– 1 ams hadoop 269 Oct 22 02:23 ams.collector.keytab
-r——– 1 ams hadoop 269 Oct 22 02:23 ams-hbase.master.keytab
-r——– 1 ams hadoop 269 Oct 22 02:23 ams-hbase.regionserver.keytab
-r——– 1 ams hadoop 260 Oct 22 02:23 ams-zk.service.keytab
-r——– 1 hdfs hadoop 251 Oct 22 02:23 dn.service.keytab
-r——– 1 ec2-user root 179 Oct 22 02:23 ec2-user.keytab
-r——– 1 hbase hadoop 188 Oct 22 02:23 hbase.headless.keytab
-r——– 1 hbase hadoop 260 Oct 22 02:23 hbase.service.keytab
-r–r—– 1 hdfs hadoop 185 Oct 22 02:23 hdfs.headless.keytab
-r——– 1 hive hadoop 257 Oct 22 02:23 hive.service.keytab
-r——– 1 mapred hadoop 254 Oct 22 02:23 jhs.service.keytab
-r——– 1 yarn hadoop 251 Oct 22 02:23 nm.service.keytab
-r——– 1 hdfs hadoop 251 Oct 22 02:23 nn.service.keytab
-r——– 1 yarn hadoop 251 Oct 22 02:23 rm.service.keytab
-r——– 1 ambari-qa hadoop 200 Oct 22 02:23 smokeuser.headless.keytab
-r——– 1 spark hadoop 188 Oct 22 02:23 spark.headless.keytab
-r–r—– 1 root hadoop 257 Oct 22 02:23 spnego.service.keytab
-r——– 1 yarn hadoop 257 Oct 22 02:23 yarn.service.keytab
-r——– 1 zookeeper hadoop 272 Oct 22 02:23 zk.service.keytab

2)
[ec2-user@ip-172-30-0-107 ~]$ sudo klist -kt /etc/security/keytabs/hive*
Keytab name: FILE:/etc/security/keytabs/hive.service.keytab
KVNO Timestamp Principal
—- —————– ——————————————————–
2 10/22/15 02:23:42 hive/ip-172-30-0-107.ec2.internal@INFOWORKS.IO
2 10/22/15 02:23:42 hive/ip-172-30-0-107.ec2.internal@INFOWORKS.IO
2 10/22/15 02:23:42 hive/ip-172-30-0-107.ec2.internal@INFOWORKS.IO

3) No errors
[ec2-user@ip-172-30-0-107 ~]$ sudo -u hive kinit -kt /etc/security/keytabs/hive* hive/ip-172-30-0-107.ec2.internal@INFOWORKS.IO
[ec2-user@ip-172-30-0-107 ~]$

4) Beeling connect string
!connect jdbc:hive2://172.30.0.107:10000/default;principal=hive/ip-172-30-0-107.ec2.internal@INFOWORKS.IO


Viewing all articles
Browse latest Browse all 3435

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>