<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>question Re: HiveServer2, is StartTLS an option for user authentication using OpenLDAP? in Support Questions</title>
    <link>https://community.cloudera.com/t5/Support-Questions/HiveServer2-is-StartTLS-an-option-for-user-authentication/m-p/87301#M28375</link>
    <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.cloudera.com/t5/user/viewprofilepage/user-id/16013"&gt;@Steve206&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Yup, you are right mate. Most of the documentation that I came across talks about ldaps implementation support for hs2.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thinking loud here.. hypothetically if there was an option and with above setup of no-ssl on ad server. starttls secure connection neg. will fail anyways and it will be a standard connection.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;There is an option to write pluggable class and then set authentication to custom.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hope that helps.&lt;/P&gt;</description>
    <pubDate>Wed, 06 Mar 2019 11:04:37 GMT</pubDate>
    <dc:creator>Consult</dc:creator>
    <dc:date>2019-03-06T11:04:37Z</dc:date>
    <item>
      <title>HiveServer2, is StartTLS an option for user authentication using OpenLDAP?</title>
      <link>https://community.cloudera.com/t5/Support-Questions/HiveServer2-is-StartTLS-an-option-for-user-authentication/m-p/87182#M28374</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Currently using CDH 5.14.4 and looking to enable user authention on HiveServer2 using OpenLDAP. The two connection options I'm seeing are LDAP and LDAPS, but we currently don't have LDAPS configured with our OpenLDAP server. Hue supports LDAP with StartTLS so I figured Hive would too. I'm wondering if StartTLS is an option that I'm not finding documentation for or if its not supported.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks for your help!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 16 Sep 2022 14:12:25 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/HiveServer2-is-StartTLS-an-option-for-user-authentication/m-p/87182#M28374</guid>
      <dc:creator>Steve206</dc:creator>
      <dc:date>2022-09-16T14:12:25Z</dc:date>
    </item>
    <item>
      <title>Re: HiveServer2, is StartTLS an option for user authentication using OpenLDAP?</title>
      <link>https://community.cloudera.com/t5/Support-Questions/HiveServer2-is-StartTLS-an-option-for-user-authentication/m-p/87301#M28375</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.cloudera.com/t5/user/viewprofilepage/user-id/16013"&gt;@Steve206&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Yup, you are right mate. Most of the documentation that I came across talks about ldaps implementation support for hs2.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thinking loud here.. hypothetically if there was an option and with above setup of no-ssl on ad server. starttls secure connection neg. will fail anyways and it will be a standard connection.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;There is an option to write pluggable class and then set authentication to custom.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hope that helps.&lt;/P&gt;</description>
      <pubDate>Wed, 06 Mar 2019 11:04:37 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/HiveServer2-is-StartTLS-an-option-for-user-authentication/m-p/87301#M28375</guid>
      <dc:creator>Consult</dc:creator>
      <dc:date>2019-03-06T11:04:37Z</dc:date>
    </item>
    <item>
      <title>Re: HiveServer2, is StartTLS an option for user authentication using OpenLDAP?</title>
      <link>https://community.cloudera.com/t5/Support-Questions/HiveServer2-is-StartTLS-an-option-for-user-authentication/m-p/87366#M28376</link>
      <description>Currently Hive's connections to LDAP do not support the StartTLS extension [1]. This does make sense as a feature request however, could you log your request over at &lt;A href="https://issues.apache.org/jira/projects/HIVE" target="_blank"&gt;https://issues.apache.org/jira/projects/HIVE&lt;/A&gt; please?&lt;BR /&gt;&lt;BR /&gt;[1] - &lt;A href="https://github.com/apache/hive/blob/master/service/src/java/org/apache/hive/service/auth/ldap/LdapSearchFactory.java#L52-L62" target="_blank"&gt;https://github.com/apache/hive/blob/master/service/src/java/org/apache/hive/service/auth/ldap/LdapSearchFactory.java#L52-L62&lt;/A&gt;</description>
      <pubDate>Thu, 07 Mar 2019 00:30:09 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/HiveServer2-is-StartTLS-an-option-for-user-authentication/m-p/87366#M28376</guid>
      <dc:creator>Harsh J</dc:creator>
      <dc:date>2019-03-07T00:30:09Z</dc:date>
    </item>
    <item>
      <title>Re: HiveServer2, is StartTLS an option for user authentication using OpenLDAP?</title>
      <link>https://community.cloudera.com/t5/Support-Questions/HiveServer2-is-StartTLS-an-option-for-user-authentication/m-p/87429#M28377</link>
      <description>&lt;P&gt;Thanks for the quick response. I'll look at enabling LDAPS before writing anything custom. I was being optimistic with only wanting to support StartTLS on OpenLDAP but we'll most likely come across another application at some point that only works with LDAPS.&lt;/P&gt;</description>
      <pubDate>Thu, 07 Mar 2019 16:19:37 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/HiveServer2-is-StartTLS-an-option-for-user-authentication/m-p/87429#M28377</guid>
      <dc:creator>Steve206</dc:creator>
      <dc:date>2019-03-07T16:19:37Z</dc:date>
    </item>
    <item>
      <title>Re: HiveServer2, is StartTLS an option for user authentication using OpenLDAP?</title>
      <link>https://community.cloudera.com/t5/Support-Questions/HiveServer2-is-StartTLS-an-option-for-user-authentication/m-p/87431#M28378</link>
      <description>&lt;P&gt;Thank you for the confirmation. Yes, I'll make a feature request.&lt;/P&gt;</description>
      <pubDate>Thu, 07 Mar 2019 16:21:16 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/HiveServer2-is-StartTLS-an-option-for-user-authentication/m-p/87431#M28378</guid>
      <dc:creator>Steve206</dc:creator>
      <dc:date>2019-03-07T16:21:16Z</dc:date>
    </item>
  </channel>
</rss>

