<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>question Re: Error while enabling kerberos on ambari in Support Questions</title>
    <link>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/240334#M202140</link>
    <description>&lt;P&gt;The above question and the replies below were originally posted in the &lt;A href="https://community.hortonworks.com/spaces/101/index.html"&gt;Community Help Track&lt;/A&gt;. On Mon May 20 16:56 UTC 2019, a member of the HCC moderation staff moved it to the &lt;A href="https://community.hortonworks.com/spaces/62/security-track_2.html"&gt;Security&lt;/A&gt; track. The &lt;EM&gt;Community Help Track&lt;/EM&gt; is intended for questions about using the HCC site itself.&lt;/P&gt;</description>
    <pubDate>Mon, 20 May 2019 23:59:57 GMT</pubDate>
    <dc:creator>ask_bill_brooks</dc:creator>
    <dc:date>2019-05-20T23:59:57Z</dc:date>
    <item>
      <title>Error while enabling kerberos on ambari</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/240323#M202129</link>
      <description>&lt;P&gt;Hello&lt;/P&gt;&lt;P&gt;I receive an error while enabling kerberos on ambari as below;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="108652-capture.jpg" style="width: 1284px;"&gt;&lt;img src="https://community.cloudera.com/t5/image/serverpage/image-id/13846iCEFC30ACDE0DB598/image-size/medium?v=v2&amp;amp;px=400" role="button" title="108652-capture.jpg" alt="108652-capture.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;i have installed krb5-kdc krb5-admin-server and config krb5.conf, kdc.conf and kadm5.acl then created new principle (as attached)&lt;/P&gt;&lt;P&gt;Note when i wrote the realm name in the kdc file in uppercase letter i got an error while using &lt;CODE&gt;kadmin.local&lt;/CODE&gt; master key cannot be fetch, it only works in lowercase letter&lt;/P&gt;&lt;P&gt;Also when i try to restart the krb5 services, it said service can't be found although it is running so i restart the server instead&lt;/P&gt;&lt;P&gt;Last thing when i installed krb5-kdc krb5-admin-server the /var/kerberos folder didn't create automatically and i had to create it manually.&lt;/P&gt;&lt;P&gt;Please help me solve this issue, thank you in advanced.&lt;/P&gt;&lt;P&gt;&lt;A href="https://community.cloudera.com/legacyfs/online/attachments/108691-kadm5acl.txt" target="_blank"&gt;KADM5.acl.txt&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://community.cloudera.com/legacyfs/online/attachments/108701-kdcconf.txt" target="_blank"&gt;KDC.conf.txt&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://community.cloudera.com/legacyfs/online/attachments/108672-krb5conf.txt" target="_blank"&gt;KRB5.conf.txt&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 17 Aug 2019 22:28:43 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/240323#M202129</guid>
      <dc:creator>mazen_elshayeb</dc:creator>
      <dc:date>2019-08-17T22:28:43Z</dc:date>
    </item>
    <item>
      <title>Re: Error while enabling kerberos on ambari</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/240324#M202130</link>
      <description>&lt;P&gt;It seems like the user that runs the kadmin process does not have access to write to the backing database... or the backing data is locked by some other process.  Take a look at the permission on the database file and make sure the permissions are set properly. &lt;/P&gt;</description>
      <pubDate>Mon, 13 May 2019 19:21:32 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/240324#M202130</guid>
      <dc:creator>rlevas</dc:creator>
      <dc:date>2019-05-13T19:21:32Z</dc:date>
    </item>
    <item>
      <title>Re: Error while enabling kerberos on ambari</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/240325#M202131</link>
      <description>&lt;P&gt;hello robert, thank you so much for your reply, im new in working on this so can you please let me know the steps to do for checking if the permissions are set properly or not on the database&lt;/P&gt;</description>
      <pubDate>Mon, 13 May 2019 19:44:43 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/240325#M202131</guid>
      <dc:creator>mazen_elshayeb</dc:creator>
      <dc:date>2019-05-13T19:44:43Z</dc:date>
    </item>
    <item>
      <title>Re: Error while enabling kerberos on ambari</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/240326#M202132</link>
      <description>&lt;P&gt;&lt;A rel="noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer" href="http://@Mazen%20Elshayeb" target="_blank"&gt;&lt;EM&gt;@Mazen Elshayeb&lt;/EM&gt;&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;There is something I don't understand can you share how you create the KDC database? How come you have a principal "&lt;STRONG&gt;ambari_hdfs-050819@HADOOP.COM&lt;/STRONG&gt;"?&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;I suggest starting afresh so delete/destroy the current KDC as the root user or sudo on ubuntu whichever is appropriate&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&lt;BR /&gt;&lt;/EM&gt;&lt;/P&gt;&lt;PRE&gt;&lt;EM&gt;# sudo &amp;nbsp;kdb5_util -r HADOOP.COM destroy&lt;/EM&gt;&lt;/PRE&gt;&lt;P&gt;&lt;EM&gt;Accept with a "Yes"&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;Now create a new Kerberos database&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&lt;STRONG&gt;Complete remove Kerberos&lt;/STRONG&gt;&lt;/EM&gt;&lt;/P&gt;&lt;PRE&gt;&lt;EM&gt;$ sudo apt purge -y krb5-kdc krb5-admin-server krb5-config krb5-locales krb5-user krb5.conf&amp;nbsp;
$ sudo rm -rf /var/lib/krb5kdc
&lt;/EM&gt;&lt;/PRE&gt;&lt;P&gt;&lt;EM&gt;Do a refresh installation&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;First, get the FQDN of your kdc server for this example &lt;/EM&gt;&lt;/P&gt;&lt;PRE&gt;&lt;EM&gt;# hostanme -f&amp;nbsp;
test.hadoop.com&lt;/EM&gt;&lt;/PRE&gt;&lt;P&gt;&lt;EM&gt;Use the above output for a later set up&lt;/EM&gt;&lt;/P&gt;&lt;PRE&gt;&lt;EM&gt;# apt install krb5-kdc krb5-admin-server krb5-config&lt;/EM&gt;&lt;/PRE&gt;&lt;P&gt;&lt;EM&gt;Proceed as follow&lt;/EM&gt;&lt;/P&gt;&lt;PRE&gt;&lt;EM&gt;At the prompt for the Kerberos Realm = HADOOP.COM
Kerberos server hostname = test.hadoop.com
Administrative server for Kerberos REALM = test.hadoop.com&lt;/EM&gt;&lt;/PRE&gt;&lt;P&gt;&lt;EM&gt;&lt;STRONG&gt;Configuring krb5 Admin Server&lt;/STRONG&gt;&lt;/EM&gt;&lt;/P&gt;&lt;PRE&gt;&lt;EM&gt;# krb5_newrealm&lt;/EM&gt;&lt;/PRE&gt;&lt;P&gt;&lt;EM&gt;Open /etc/krb5kdc/kadm5.acl it should contain a line like this &lt;/EM&gt;&lt;/P&gt;&lt;PRE&gt;&lt;EM&gt;*/admin@HADOOP.COM *&lt;/EM&gt;&lt;/PRE&gt;&lt;P&gt;&lt;EM&gt;The kdc.conf should be adjusted to look like this&lt;/EM&gt;&lt;/P&gt;&lt;PRE&gt;&lt;EM&gt;[kdcdefaults]
&amp;nbsp;kdc_ports = 88
&amp;nbsp;kdc_tcp_ports = 88

[realms]
&amp;nbsp;HADOOP.COM = {
&amp;nbsp; #master_key_type = aes256-cts
&amp;nbsp; acl_file = /var/kerberos/krb5kdc/kadm5.acl
&amp;nbsp; dict_file = /usr/share/dict/words
&amp;nbsp; admin_keytab = /var/kerberos/krb5kdc/kadm5.keytab
&amp;nbsp; supported_enctypes = aes256-cts:normal aes128-cts:normal des3-hmac-sha1:normal arcfour-hmac:normal camellia256-cts:normal camellia128-cts:normal des-hmac-sha1:normal des-cbc-md5:normal des-cbc-crc:normal
}&lt;/EM&gt;&lt;/PRE&gt;&lt;P&gt;&lt;EM&gt;&lt;BR /&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;The krb5.conf should look like this if you are on a multi-node cluster this is the fines you will copy to all other hosts, notice the entry under domain_realm?&lt;/EM&gt;&lt;/P&gt;&lt;PRE&gt;&lt;EM&gt;[libdefaults]
&amp;nbsp; renew_lifetime = 7d
&amp;nbsp; forwardable = true
&amp;nbsp; default_realm = HADOOP.COM
&amp;nbsp; ticket_lifetime = 24h
&amp;nbsp; dns_lookup_realm = false
&amp;nbsp; dns_lookup_kdc = false
&amp;nbsp; default_ccache_name = /tmp/krb5cc_%{uid}
&amp;nbsp; #default_tgs_enctypes = aes des3-cbc-sha1 rc4 des-cbc-md5
&amp;nbsp; #default_tkt_enctypes = aes des3-cbc-sha1 rc4 des-cbc-md5

[domain_realm]
&amp;nbsp; .hadoop.com = HADOOP.COM
&amp;nbsp; hadoop.com = HADOOP.COM

[logging]
&amp;nbsp; default = FILE:/var/log/krb5kdc.log
&amp;nbsp; admin_server = FILE:/var/log/kadmind.log
&amp;nbsp; kdc = FILE:/var/log/krb5kdc.log

[realms]
&amp;nbsp; HADOOP.COM = {
&amp;nbsp; &amp;nbsp; admin_server = test.hadoop.com
&amp;nbsp; &amp;nbsp; kdc = test.hadoop.com
&amp;nbsp; }&lt;/EM&gt;&lt;/PRE&gt;&lt;P&gt;&lt;EM&gt;&lt;BR /&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;Restart the Kerberos kdc daemons and kerberos admin servers:&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&lt;BR /&gt;&lt;/EM&gt;&lt;/P&gt;&lt;PRE&gt;&lt;EM&gt;# for script in /etc/init.d/krb5*; do $script restart; done&lt;/EM&gt;&lt;/PRE&gt;&lt;P&gt;&lt;EM&gt;&lt;BR /&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;Don't manually create any principle like the "ambari_hdfs-050819@HADOOP.COM"&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;Go to the ambari kerberos wizard for the domain notice the . (dot)&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&lt;BR /&gt;&lt;/EM&gt;&lt;/P&gt;&lt;PRE&gt;&lt;EM&gt;kdc host = test.hadoop.com
Real Name = HADOOP.COM
Domains = .hadoop.com ,hadoop.com
-----
kadmin host = test.hadoop.com
Admin principal = admin/admin@HADOOP.COM
Admin &amp;nbsp;password = password set during the creation of kdc database&lt;/EM&gt;&lt;/PRE&gt;&lt;P&gt;&lt;EM&gt;Now from here just accept the default the keytabs should generate successfully. I have attached files to guide you &lt;A href="https://community.cloudera.com/legacyfs/online/attachments/108722-procedure-to-kerberize-hdp-31-part2.pdf"&gt;Procedure to Kerberize HDP 3.1_Part2.pdf&lt;/A&gt;&lt;A href="https://community.cloudera.com/legacyfs/online/attachments/108655-procedure-to-kerberize-hdp-31-part1.pdf"&gt;Procedure to Kerberize HDP 3.1_Part1.pdf&lt;/A&gt; &lt;A href="https://community.cloudera.com/legacyfs/online/attachments/108713-procedure-to-kerberize-hdp-31-part3.pdf"&gt;Procedure to Kerberize HDP 3.1_Part3.pdf&lt;/A&gt; &lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;Hope that helps please revert if you have any questions &lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 14 May 2019 02:04:42 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/240326#M202132</guid>
      <dc:creator>Shelton</dc:creator>
      <dc:date>2019-05-14T02:04:42Z</dc:date>
    </item>
    <item>
      <title>Re: Error while enabling kerberos on ambari</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/240327#M202133</link>
      <description>&lt;P&gt;Hello &lt;A rel="user" href="https://community.hortonworks.com/users/1271/sheltong.html"&gt;Geoffrey Shelton&lt;/A&gt;, thank you so much for your reply, i will follow your steps and if there any issue will refer back to you.&lt;/P&gt;</description>
      <pubDate>Tue, 14 May 2019 10:15:15 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/240327#M202133</guid>
      <dc:creator>mazen_elshayeb</dc:creator>
      <dc:date>2019-05-14T10:15:15Z</dc:date>
    </item>
    <item>
      <title>Re: Error while enabling kerberos on ambari</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/240328#M202134</link>
      <description>&lt;P&gt;&lt;A rel="noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer" href="http://mazen%20elshayeb/" target="_blank"&gt;&lt;EM&gt;@Mazen Elshayeb&lt;/EM&gt;&lt;/A&gt; &lt;/P&gt;&lt;P&gt;&lt;EM&gt;Any updates?&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 15 May 2019 03:53:10 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/240328#M202134</guid>
      <dc:creator>Shelton</dc:creator>
      <dc:date>2019-05-15T03:53:10Z</dc:date>
    </item>
    <item>
      <title>Re: Error while enabling kerberos on ambari</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/240329#M202135</link>
      <description>&lt;P&gt;Hello &lt;A rel="user nofollow noopener noreferrer" href="https://community.hortonworks.com/users/1271/sheltong.html" target="_blank"&gt;Geoffrey Shelton Okot&lt;/A&gt;   &lt;/P&gt;&lt;P&gt;I followed all the steps that you sent to me and entered same ambari wizard configuration as you said but now the ambari wizard keeps asking for the admin principal and password, i have not created any principal manually as you mentioned in your reply. &lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="108717-capture1.jpg" style="width: 686px;"&gt;&lt;img src="https://community.cloudera.com/t5/image/serverpage/image-id/13845iE4411F6773FADC84/image-size/medium?v=v2&amp;amp;px=400" role="button" title="108717-capture1.jpg" alt="108717-capture1.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;i couldn't open the attached pdf files you sent to me access forbidden.&lt;/P&gt;&lt;P&gt;Note: I'm working on VM and my hostname -f is ubuntu, is this will make any changes on the domain_realm or it will be as it is &lt;/P&gt;&lt;P&gt;&lt;EM&gt; .hadoop.com = HADOOP.COM&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;  hadoop.com =&lt;EM&gt;HADOOP.COM &lt;/EM&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&lt;EM&gt;attached is my new /etc/krb5kdc/krb5.conf kdc.conf and kadm5.acl&lt;/EM&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&lt;EM&gt;&lt;A href="https://community.cloudera.com/legacyfs/online/attachments/108718-kadm5acl.txt" target="_blank"&gt;KADM5.acl.txt&lt;/A&gt;&lt;/EM&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&lt;EM&gt;&lt;A href="https://community.cloudera.com/legacyfs/online/attachments/108707-kdcconf.txt" target="_blank"&gt;KDC.conf.txt&lt;/A&gt;&lt;/EM&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&lt;EM&gt;&lt;A href="https://community.cloudera.com/legacyfs/online/attachments/108725-krb5conf.txt" target="_blank"&gt;KRB5.conf.txt&lt;/A&gt;&lt;/EM&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 17 Aug 2019 22:28:35 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/240329#M202135</guid>
      <dc:creator>mazen_elshayeb</dc:creator>
      <dc:date>2019-08-17T22:28:35Z</dc:date>
    </item>
    <item>
      <title>Re: Error while enabling kerberos on ambari</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/240330#M202136</link>
      <description>&lt;P&gt;&lt;A rel="noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer" href="http://mazen%20elshayeb/" target="_blank"&gt;&lt;EM&gt;@Mazen Elshayeb&lt;/EM&gt;&lt;/A&gt; &lt;/P&gt;&lt;P&gt;&lt;EM&gt;That's good news the principal admin should be &lt;A rel="noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer" href="mailto:admin/admin@HADOOP.COM" target="_blank"&gt;&lt;STRONG&gt;admin/admin@HADOOP.COM&lt;/STRONG&gt;&lt;/A&gt; and the password is the magic password you used when creating the Kerberos database. You must have gotten a warning saying keep the password safely &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;Please proceed and revert!&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 16 May 2019 13:20:05 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/240330#M202136</guid>
      <dc:creator>Shelton</dc:creator>
      <dc:date>2019-05-16T13:20:05Z</dc:date>
    </item>
    <item>
      <title>Re: Error while enabling kerberos on ambari</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/240331#M202137</link>
      <description>&lt;P&gt;&lt;A rel="user" href="https://community.cloudera.com/users/1271/sheltong.html" nodeid="1271"&gt;@Geoffrey Shelton Okot&lt;/A&gt; &lt;/P&gt;&lt;P&gt;Yes im using &lt;EM&gt; &lt;A rel="noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer" href="mailto:admin/admin@HADOOP.COM" target="_blank"&gt;&lt;STRONG&gt;admin/admin@HADOOP.COM&lt;/STRONG&gt;&lt;/A&gt;&lt;/EM&gt;  as my principal admin and the password i have created but it still keep asking me for principal admin and password  &lt;/P&gt;</description>
      <pubDate>Thu, 16 May 2019 14:57:40 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/240331#M202137</guid>
      <dc:creator>mazen_elshayeb</dc:creator>
      <dc:date>2019-05-16T14:57:40Z</dc:date>
    </item>
    <item>
      <title>Re: Error while enabling kerberos on ambari</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/240332#M202138</link>
      <description>&lt;P&gt;&lt;A rel="noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer" href="http://mazen%20elshayeb/" target="_blank"&gt;&lt;EM&gt;@Mazen Elshayeb&lt;/EM&gt;&lt;/A&gt;&lt;EM&gt; &lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;Can you capture and share your screenshot?&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;Firstly can you ensure your kdc and kadmin are started?&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;Did you run this step? If not please do that while logged in as root, the output should look like below&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&lt;BR /&gt;&lt;/EM&gt;&lt;/P&gt;&lt;PRE&gt;&lt;EM&gt;# kadmin.local -q "addprinc admin/admin"&lt;/EM&gt;&lt;/PRE&gt;&lt;P&gt;&lt;EM&gt;Desired output&lt;/EM&gt;&lt;/P&gt;&lt;PRE&gt;&lt;EM&gt;Authenticating as principal root/admin@HADOOP.COM with password.
WARNING: no policy specified for admin/admin@HADOOP.COM; defaulting to no policy
Enter password for principal "admin/admin@HADOOP.COM": &amp;nbsp; {password_used_during_creation}
Re-enter password for principal "admin/admin@HADOOP.COM": {password_used_during_creation}
Principal "admin/admin@HADOOP.COM" created.&lt;/EM&gt;&lt;/PRE&gt;&lt;P&gt;&lt;EM&gt;&lt;STRONG&gt;Restart kdc &lt;/STRONG&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;(Centos  please adapt accordingly)&lt;/EM&gt;&lt;/P&gt;&lt;PRE&gt;&lt;EM&gt;# /etc/rc.d/init.d/krb5kdc start&lt;/EM&gt;&lt;/PRE&gt;&lt;P&gt;&lt;EM&gt;Desired output&lt;/EM&gt;&lt;/P&gt;&lt;PRE&gt;&lt;EM&gt;Starting Kerberos 5 KDC: &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; [ &amp;nbsp;OK &amp;nbsp;]&lt;/EM&gt;&lt;/PRE&gt;&lt;P&gt;&lt;EM&gt;&lt;STRONG&gt;Restart  kadmin &lt;/STRONG&gt;&lt;BR /&gt;&lt;/EM&gt;&lt;/P&gt;&lt;PRE&gt;&lt;EM&gt;# /etc/rc.d/init.d/kadmin start&lt;/EM&gt;&lt;/PRE&gt;&lt;P&gt;&lt;EM&gt;Desired output&lt;/EM&gt;&lt;/P&gt;&lt;PRE&gt;&lt;EM&gt;Starting Kerberos 5 Admin Server: &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;[ &amp;nbsp;OK &amp;nbsp;]&lt;/EM&gt;&lt;/PRE&gt;&lt;P&gt;&lt;EM&gt;&lt;BR /&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;Now continue with Ambari kerberization wizard  using the &lt;STRONG&gt;admin/admin@HADOOP.COM&lt;/STRONG&gt; with password earlier set&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&lt;BR /&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;That should work &lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 16 May 2019 16:12:23 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/240332#M202138</guid>
      <dc:creator>Shelton</dc:creator>
      <dc:date>2019-05-16T16:12:23Z</dc:date>
    </item>
    <item>
      <title>Re: Error while enabling kerberos on ambari</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/240333#M202139</link>
      <description>&lt;P&gt;&lt;A rel="user" href="https://community.cloudera.com/users/1271/sheltong.html" nodeid="1271" target="_blank"&gt;@Geoffrey Shelton Okot&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Hello, sorry for keep disturbing you, hope i can solve this issue unfortunately after i followed you steps i got back the same error as before shown bellow &lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="108775-capture.jpg" style="width: 1216px;"&gt;&lt;img src="https://community.cloudera.com/t5/image/serverpage/image-id/13843iEC5302C1A51DD083/image-size/medium?v=v2&amp;amp;px=400" role="button" title="108775-capture.jpg" alt="108775-capture.jpg" /&gt;&lt;/span&gt; and my kerberos wizard configuration as below &lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="108823-capture1.jpg" style="width: 1209px;"&gt;&lt;img src="https://community.cloudera.com/t5/image/serverpage/image-id/13844iC3BC5BBEB998B5D0/image-size/medium?v=v2&amp;amp;px=400" role="button" title="108823-capture1.jpg" alt="108823-capture1.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;note that i didnt create principle &lt;A rel="noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer nofollow noopener noreferrer" href="mailto:ambari_hdfs-051819@HADOOP.COM" target="_blank"&gt;ambari_hdfs-051819@HADOOP.COM&lt;/A&gt;  i only created &lt;A rel="noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer nofollow noopener noreferrer" href="mailto:admin/admin@HADOOP.COM" target="_blank"&gt;admin/admin@HADOOP.COM&lt;/A&gt; as you mentioned before and actually ambari_hdfs is my cluster name, any solution for this?&lt;/P&gt;&lt;P&gt;Thank you so much in advanced .&lt;/P&gt;</description>
      <pubDate>Sat, 17 Aug 2019 22:28:27 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/240333#M202139</guid>
      <dc:creator>mazen_elshayeb</dc:creator>
      <dc:date>2019-08-17T22:28:27Z</dc:date>
    </item>
    <item>
      <title>Re: Error while enabling kerberos on ambari</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/240334#M202140</link>
      <description>&lt;P&gt;The above question and the replies below were originally posted in the &lt;A href="https://community.hortonworks.com/spaces/101/index.html"&gt;Community Help Track&lt;/A&gt;. On Mon May 20 16:56 UTC 2019, a member of the HCC moderation staff moved it to the &lt;A href="https://community.hortonworks.com/spaces/62/security-track_2.html"&gt;Security&lt;/A&gt; track. The &lt;EM&gt;Community Help Track&lt;/EM&gt; is intended for questions about using the HCC site itself.&lt;/P&gt;</description>
      <pubDate>Mon, 20 May 2019 23:59:57 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/240334#M202140</guid>
      <dc:creator>ask_bill_brooks</dc:creator>
      <dc:date>2019-05-20T23:59:57Z</dc:date>
    </item>
    <item>
      <title>Re: Error while enabling kerberos on ambari</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/240335#M202141</link>
      <description>&lt;P&gt;Hello &lt;/P&gt;&lt;P&gt;Any other solution i can do to solve this issue?&lt;/P&gt;</description>
      <pubDate>Wed, 22 May 2019 14:40:23 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/240335#M202141</guid>
      <dc:creator>mazen_elshayeb</dc:creator>
      <dc:date>2019-05-22T14:40:23Z</dc:date>
    </item>
    <item>
      <title>Re: Error while enabling kerberos on ambari</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/240336#M202142</link>
      <description>&lt;P&gt;&lt;A rel="noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer noopener noreferrer" href="http://mazen%20elshayeb/" target="_blank"&gt;&lt;EM&gt;@Mazen Elshayeb&lt;/EM&gt;&lt;/A&gt; &lt;/P&gt;&lt;P&gt;&lt;EM&gt;Unbelievable ping me on linkedin ,could help with remote &lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 22 May 2019 15:51:56 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/240336#M202142</guid>
      <dc:creator>Shelton</dc:creator>
      <dc:date>2019-05-22T15:51:56Z</dc:date>
    </item>
    <item>
      <title>Re: Error while enabling kerberos on ambari</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/287554#M213107</link>
      <description>&lt;P&gt;Sorry for the bump. I tried this in the HDP Sandbox and discovered that installing krb5-workstation-1.15.1-37.el7_7.2.x86_64.rpm solved the problem&lt;/P&gt;</description>
      <pubDate>Mon, 13 Jan 2020 23:37:12 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Error-while-enabling-kerberos-on-ambari/m-p/287554#M213107</guid>
      <dc:creator>marin99</dc:creator>
      <dc:date>2020-01-13T23:37:12Z</dc:date>
    </item>
  </channel>
</rss>

