<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>question Error generating aggregated logs for Spark Applications on Cloudera CDP 7.2.18 in Support Questions</title>
    <link>https://community.cloudera.com/t5/Support-Questions/Error-generating-aggregated-logs-for-Spark-Applications-on/m-p/411293#M253020</link>
    <description>&lt;P&gt;Hi everyone,&lt;BR /&gt;&lt;BR /&gt;I am having an issue where the aggregated logs are not being generated/saved for Spark Jobs.&lt;BR /&gt;There is the below error but I don't know what can be causing this.&lt;BR /&gt;The user has permissions on Ranger for ADLS.&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;PRE&gt;Failed to setup application log directory for application_1751535521169_0953
Failed to acquire a SAS token for get-status on /oplogs/yarn-app-logs/csso_luis.simoes/bucket-logs-ifile/0953/application_1751535521169_0953 due to org.apache.hadoop.security.AccessControlException: org.apache.ranger.raz.intg.RangerRazException: &amp;lt;!doctype html&amp;gt;&amp;lt;html lang="en"&amp;gt;&amp;lt;head&amp;gt;&amp;lt;title&amp;gt;HTTP Status 401 – Unauthorized&amp;lt;/title&amp;gt;&amp;lt;style type="text/css"&amp;gt;body {font-family:Tahoma,Arial,sans-serif;} h1, h2, h3, b {color:white;background-color:#525D76;} h1 {font-size:22px;} h2 {font-size:16px;} h3 {font-size:14px;} p {font-size:12px;} a {color:black;} .line {height:1px;background-color:#525D76;border:none;}&amp;lt;/style&amp;gt;&amp;lt;/head&amp;gt;&amp;lt;body&amp;gt;&amp;lt;h1&amp;gt;HTTP Status 401 – Unauthorized&amp;lt;/h1&amp;gt;&amp;lt;hr class="line" /&amp;gt;&amp;lt;p&amp;gt;&amp;lt;b&amp;gt;Type&amp;lt;/b&amp;gt; Status Report&amp;lt;/p&amp;gt;&amp;lt;p&amp;gt;&amp;lt;b&amp;gt;Message&amp;lt;/b&amp;gt; Authentication required&amp;lt;/p&amp;gt;&amp;lt;p&amp;gt;&amp;lt;b&amp;gt;Description&amp;lt;/b&amp;gt; The request has not been applied to the target resource because it lacks valid authentication credentials for that resource.&amp;lt;/p&amp;gt;&amp;lt;hr class="line" /&amp;gt;&amp;lt;h3&amp;gt;Apache Tomcat/8.5.100&amp;lt;/h3&amp;gt;&amp;lt;/body&amp;gt;&amp;lt;/html&amp;gt;; HttpStatus: 401
	at org.apache.hadoop.fs.azurebfs.services.AbfsClient.appendSASTokenToQuery(AbfsClient.java:1233)
	at org.apache.hadoop.fs.azurebfs.services.AbfsClient.appendSASTokenToQuery(AbfsClient.java:1199)
	at org.apache.hadoop.fs.azurebfs.services.AbfsClient.getPathStatus(AbfsClient.java:905)
	at org.apache.hadoop.fs.azurebfs.AzureBlobFileSystemStore.getFileStatus(AzureBlobFileSystemStore.java:1007)
	at org.apache.hadoop.fs.azurebfs.AzureBlobFileSystem.getFileStatus(AzureBlobFileSystem.java:729)
	at org.apache.hadoop.fs.azurebfs.AzureBlobFileSystem.getFileStatus(AzureBlobFileSystem.java:719)
	at org.apache.hadoop.yarn.logaggregation.filecontroller.LogAggregationFileController.checkExists(LogAggregationFileController.java:530)
	at org.apache.hadoop.yarn.logaggregation.filecontroller.LogAggregationFileController$1.run(LogAggregationFileController.java:479)
	at java.security.AccessController.doPrivileged(Native Method)
	at javax.security.auth.Subject.doAs(Subject.java:422)
	at org.apache.hadoop.security.UserGroupInformation.doAs(UserGroupInformation.java:1899)
	at org.apache.hadoop.yarn.logaggregation.filecontroller.LogAggregationFileController.createAppDir(LogAggregationFileController.java:460)
	at org.apache.hadoop.yarn.server.nodemanager.containermanager.logaggregation.LogAggregationService.initAppAggregator(LogAggregationService.java:273)
	at org.apache.hadoop.yarn.server.nodemanager.containermanager.logaggregation.LogAggregationService.initApp(LogAggregationService.java:223)
	at org.apache.hadoop.yarn.server.nodemanager.containermanager.logaggregation.LogAggregationService.handle(LogAggregationService.java:366)
	at org.apache.hadoop.yarn.server.nodemanager.containermanager.logaggregation.LogAggregationService.handle(LogAggregationService.java:69)
	at org.apache.hadoop.yarn.event.AsyncDispatcher.dispatch(AsyncDispatcher.java:267)
	at org.apache.hadoop.yarn.event.AsyncDispatcher$1.run(AsyncDispatcher.java:157)
	at java.lang.Thread.run(Thread.java:750)&lt;/PRE&gt;&lt;P&gt;&amp;nbsp;Any help would be very much appreciated.&lt;/P&gt;</description>
    <pubDate>Wed, 09 Jul 2025 11:03:24 GMT</pubDate>
    <dc:creator>LSIMS</dc:creator>
    <dc:date>2025-07-09T11:03:24Z</dc:date>
    <item>
      <title>Error generating aggregated logs for Spark Applications on Cloudera CDP 7.2.18</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Error-generating-aggregated-logs-for-Spark-Applications-on/m-p/411293#M253020</link>
      <description>&lt;P&gt;Hi everyone,&lt;BR /&gt;&lt;BR /&gt;I am having an issue where the aggregated logs are not being generated/saved for Spark Jobs.&lt;BR /&gt;There is the below error but I don't know what can be causing this.&lt;BR /&gt;The user has permissions on Ranger for ADLS.&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;PRE&gt;Failed to setup application log directory for application_1751535521169_0953
Failed to acquire a SAS token for get-status on /oplogs/yarn-app-logs/csso_luis.simoes/bucket-logs-ifile/0953/application_1751535521169_0953 due to org.apache.hadoop.security.AccessControlException: org.apache.ranger.raz.intg.RangerRazException: &amp;lt;!doctype html&amp;gt;&amp;lt;html lang="en"&amp;gt;&amp;lt;head&amp;gt;&amp;lt;title&amp;gt;HTTP Status 401 – Unauthorized&amp;lt;/title&amp;gt;&amp;lt;style type="text/css"&amp;gt;body {font-family:Tahoma,Arial,sans-serif;} h1, h2, h3, b {color:white;background-color:#525D76;} h1 {font-size:22px;} h2 {font-size:16px;} h3 {font-size:14px;} p {font-size:12px;} a {color:black;} .line {height:1px;background-color:#525D76;border:none;}&amp;lt;/style&amp;gt;&amp;lt;/head&amp;gt;&amp;lt;body&amp;gt;&amp;lt;h1&amp;gt;HTTP Status 401 – Unauthorized&amp;lt;/h1&amp;gt;&amp;lt;hr class="line" /&amp;gt;&amp;lt;p&amp;gt;&amp;lt;b&amp;gt;Type&amp;lt;/b&amp;gt; Status Report&amp;lt;/p&amp;gt;&amp;lt;p&amp;gt;&amp;lt;b&amp;gt;Message&amp;lt;/b&amp;gt; Authentication required&amp;lt;/p&amp;gt;&amp;lt;p&amp;gt;&amp;lt;b&amp;gt;Description&amp;lt;/b&amp;gt; The request has not been applied to the target resource because it lacks valid authentication credentials for that resource.&amp;lt;/p&amp;gt;&amp;lt;hr class="line" /&amp;gt;&amp;lt;h3&amp;gt;Apache Tomcat/8.5.100&amp;lt;/h3&amp;gt;&amp;lt;/body&amp;gt;&amp;lt;/html&amp;gt;; HttpStatus: 401
	at org.apache.hadoop.fs.azurebfs.services.AbfsClient.appendSASTokenToQuery(AbfsClient.java:1233)
	at org.apache.hadoop.fs.azurebfs.services.AbfsClient.appendSASTokenToQuery(AbfsClient.java:1199)
	at org.apache.hadoop.fs.azurebfs.services.AbfsClient.getPathStatus(AbfsClient.java:905)
	at org.apache.hadoop.fs.azurebfs.AzureBlobFileSystemStore.getFileStatus(AzureBlobFileSystemStore.java:1007)
	at org.apache.hadoop.fs.azurebfs.AzureBlobFileSystem.getFileStatus(AzureBlobFileSystem.java:729)
	at org.apache.hadoop.fs.azurebfs.AzureBlobFileSystem.getFileStatus(AzureBlobFileSystem.java:719)
	at org.apache.hadoop.yarn.logaggregation.filecontroller.LogAggregationFileController.checkExists(LogAggregationFileController.java:530)
	at org.apache.hadoop.yarn.logaggregation.filecontroller.LogAggregationFileController$1.run(LogAggregationFileController.java:479)
	at java.security.AccessController.doPrivileged(Native Method)
	at javax.security.auth.Subject.doAs(Subject.java:422)
	at org.apache.hadoop.security.UserGroupInformation.doAs(UserGroupInformation.java:1899)
	at org.apache.hadoop.yarn.logaggregation.filecontroller.LogAggregationFileController.createAppDir(LogAggregationFileController.java:460)
	at org.apache.hadoop.yarn.server.nodemanager.containermanager.logaggregation.LogAggregationService.initAppAggregator(LogAggregationService.java:273)
	at org.apache.hadoop.yarn.server.nodemanager.containermanager.logaggregation.LogAggregationService.initApp(LogAggregationService.java:223)
	at org.apache.hadoop.yarn.server.nodemanager.containermanager.logaggregation.LogAggregationService.handle(LogAggregationService.java:366)
	at org.apache.hadoop.yarn.server.nodemanager.containermanager.logaggregation.LogAggregationService.handle(LogAggregationService.java:69)
	at org.apache.hadoop.yarn.event.AsyncDispatcher.dispatch(AsyncDispatcher.java:267)
	at org.apache.hadoop.yarn.event.AsyncDispatcher$1.run(AsyncDispatcher.java:157)
	at java.lang.Thread.run(Thread.java:750)&lt;/PRE&gt;&lt;P&gt;&amp;nbsp;Any help would be very much appreciated.&lt;/P&gt;</description>
      <pubDate>Wed, 09 Jul 2025 11:03:24 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Error-generating-aggregated-logs-for-Spark-Applications-on/m-p/411293#M253020</guid>
      <dc:creator>LSIMS</dc:creator>
      <dc:date>2025-07-09T11:03:24Z</dc:date>
    </item>
    <item>
      <title>Re: Error generating aggregated logs for Spark Applications on Cloudera CDP 7.2.18</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Error-generating-aggregated-logs-for-Spark-Applications-on/m-p/412102#M253245</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.cloudera.com/t5/user/viewprofilepage/user-id/127202"&gt;@LSIMS&lt;/a&gt;,&amp;nbsp;&lt;/P&gt;&lt;P&gt;The logs are complaining about no valid credentials, it's reporting "HTTP Status 401 – Unauthorized".&amp;nbsp;&lt;/P&gt;&lt;P&gt;This could be also due to a valid Kerberos token not being passed.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Something you can try is adding below setting under "YARN Service Advanced Configuration Snippet (Safety Valve) for core-site.xml" on YARN configurations tab.&amp;nbsp;&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;Name: hadoop.kerberos.keytab.login.autorenewal.enabled
Value: true&lt;/LI-CODE&gt;&lt;P&gt;Then, restart any stale service and retry. This should work now.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Aug 2025 17:54:08 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Error-generating-aggregated-logs-for-Spark-Applications-on/m-p/412102#M253245</guid>
      <dc:creator>vafs</dc:creator>
      <dc:date>2025-08-12T17:54:08Z</dc:date>
    </item>
    <item>
      <title>Re: Error generating aggregated logs for Spark Applications on Cloudera CDP 7.2.18</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Error-generating-aggregated-logs-for-Spark-Applications-on/m-p/412107#M253247</link>
      <description>But this is not supposed to be configured out of the box?&lt;BR /&gt;The aggregation logs are not using the service principals and built-in authentication?&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Wed, 13 Aug 2025 12:15:52 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Error-generating-aggregated-logs-for-Spark-Applications-on/m-p/412107#M253247</guid>
      <dc:creator>LSIMS</dc:creator>
      <dc:date>2025-08-13T12:15:52Z</dc:date>
    </item>
    <item>
      <title>Re: Error generating aggregated logs for Spark Applications on Cloudera CDP 7.2.18</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Error-generating-aggregated-logs-for-Spark-Applications-on/m-p/412114#M253252</link>
      <description>&lt;P&gt;They are using the service principals, is the autorenewal that is not being done on time.&amp;nbsp;&lt;BR /&gt;Adding the setting you can force that to be done.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 14 Aug 2025 16:30:22 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Error-generating-aggregated-logs-for-Spark-Applications-on/m-p/412114#M253252</guid>
      <dc:creator>vafs</dc:creator>
      <dc:date>2025-08-14T16:30:22Z</dc:date>
    </item>
    <item>
      <title>Re: Error generating aggregated logs for Spark Applications on Cloudera CDP 7.2.18</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Error-generating-aggregated-logs-for-Spark-Applications-on/m-p/412117#M253255</link>
      <description>So this mean that the default configuration is the most correct configuration?&lt;BR /&gt;I would assume the configuration is supposed to ensure these core functionalities work 100%.&lt;BR /&gt;</description>
      <pubDate>Fri, 15 Aug 2025 14:03:52 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Error-generating-aggregated-logs-for-Spark-Applications-on/m-p/412117#M253255</guid>
      <dc:creator>LSIMS</dc:creator>
      <dc:date>2025-08-15T14:03:52Z</dc:date>
    </item>
    <item>
      <title>Re: Error generating aggregated logs for Spark Applications on Cloudera CDP 7.2.18</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Error-generating-aggregated-logs-for-Spark-Applications-on/m-p/412129#M253260</link>
      <description>&lt;P&gt;Default configurations are the tested and for that reason are set in that way, but those are configurable for a reason, sometimes, and depending on the environment, the use case and much more, they need to be tuned in an specific way.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 18 Aug 2025 15:13:10 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Error-generating-aggregated-logs-for-Spark-Applications-on/m-p/412129#M253260</guid>
      <dc:creator>vafs</dc:creator>
      <dc:date>2025-08-18T15:13:10Z</dc:date>
    </item>
  </channel>
</rss>

