t; > 发件人: Arpit Gupta [mailto:ar...@hortonworks.com]
> > 发送时间: 2012年7月27日 10:03
> > 收件人: common-dev@hadoop.apache.org
> > 主题: Re: regarding _HOST token replacement in security hadoop
> >
> > you need to use HTTP/_h...@site.com as that is the principal needed by
&g
a [mailto:ar...@hortonworks.com]
> 发送时间: 2012年7月27日 10:03
> 收件人: common-dev@hadoop.apache.org
> 主题: Re: regarding _HOST token replacement in security hadoop
>
> you need to use HTTP/_h...@site.com as that is the principal needed by
> spnego. So you would need create the HTTP/_H
getCanonicalHostName() to get _HOST
Meanwhile I will check what you said. Thank you~
-邮件原件-
发件人: Arpit Gupta [mailto:ar...@hortonworks.com]
发送时间: 2012年7月27日 10:03
收件人: common-dev@hadoop.apache.org
主题: Re: regarding _HOST token replacement in security hadoop
you need to use HTTP/_h
ver.KerberosAuthenticationHandler:
> Initialized, principal [nn/167-52-0-56.site@site] from keytab
> [/home/hdfs/keytab/nn.service.keytab]
>
>
> -邮件原件-
> 发件人: Arpit Gupta [mailto:ar...@hortonworks.com]
> 发送时间: 2012年7月27日 9:22
> 收件人: common-dev@hadoop.apache.org
>
-56.site@site] from keytab
[/home/hdfs/keytab/nn.service.keytab]
-邮件原件-
发件人: Arpit Gupta [mailto:ar...@hortonworks.com]
发送时间: 2012年7月27日 9:22
收件人: common-dev@hadoop.apache.org
主题: Re: regarding _HOST token replacement in security hadoop
what version of hadoop are you using?
also
what version of hadoop are you using?
also
dfs.web.authentication.kerberos.principal should be set to HTTP/_h...@site.com
--
Arpit Gupta
Hortonworks Inc.
http://hortonworks.com/
On Jul 26, 2012, at 6:11 PM, Wangwenli wrote:
> Hi all,
>
> I configured like below in hdfs-site.xml:
>
>
> d
Hi all,
I configured like below in hdfs-site.xml:
dfs.namenode.kerberos.principal
nn/_HOST@site
dfs.web.authentication.kerberos.principal
nn/_HOST@site
When start up namenode, I found, namenode will use principal :
nn/167-52-0-56@site to login, but the http server will