Re: [DISCUSS] FLIP-211: Kerberos delegation token framework

2022-01-13 Thread
Hi G Thanks for your quick reply. I think reserving the config of *security.kerberos.fetch.delegation-token* and simplifying disable the token fetching is a good idea.By the way, maybe this should be added in the migration plan or intergation section in the FLIP-211. Besides, I have a question

Re: [DISCUSS] FLIP-211: Kerberos delegation token framework

2022-01-12 Thread
Hi G, Thanks for starting the discussion. I think this is a important improvement for Flink. The proposal looks good to me. And I focus on one point. 1. Hope that keeping the consistent with current implementation, we rely on the config of  'security.kerberos.fetch.delegation-token’ to submit F