<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>question Twitter stream using flume on a securized cluster in Archives of Support Questions (Read Only)</title>
    <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Twitter-stream-using-flume-on-a-securized-cluster/m-p/13826#M2005</link>
    <description>&lt;P&gt;Hello, I am trying to configure my twitter agent for flume on a kerberized cluster.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I followed the security manual, adding :&lt;/P&gt;&lt;PRE&gt;agentName.sinks.sinkName.hdfs.kerberosPrincipal = flume/fully.qualified.domain.name@YOUR-REALM.COM
agentName.sinks.sinkName.hdfs.kerberosKeytab = /etc/flume-ng/conf/flume.keytab&lt;/PRE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;with my own values.&lt;/P&gt;&lt;P&gt;As Kerberos principal I created both flume@HADDOP.COM and flume/_HOST@HADOOP.COM&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;kadmin.local: ktadd -k /etc/flume-ng/conf/flume.keytab flume/evl2400469.eu.verio.net@HADOOP.COM&lt;BR /&gt;Entry for principal flume/evl2400469.eu.verio.net@HADOOP.COM with kvno 2, encryption type Triple DES cbc mode with HMAC/sha1 added to keytab WRFILE:/etc/flume-ng/conf/flume.keytab.&lt;BR /&gt;Entry for principal flume/evl2400469.eu.verio.net@HADOOP.COM with kvno 2, encryption type DES cbc mode with CRC-32 added to keytab WRFILE:/etc/flume-ng/conf/flume.keytab&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;[root@evl2400469 ~]# kinit -p flume/evl2400469.eu.verio.net@HADOOP.COM&lt;BR /&gt;Password for flume/evl2400469.eu.verio.net@HADOOP.COM:&lt;BR /&gt;[root@evl2400469 ~]# klist&lt;BR /&gt;Ticket cache: FILE:/tmp/krb5cc_0&lt;BR /&gt;Default principal: flume/evl2400469.eu.verio.net@HADOOP.COM&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;[root@evl2400469 ~]# ls -l /etc/flume-ng/conf/&lt;BR /&gt;total 16&lt;BR /&gt;-rw-r--r-- 1 root root 0 Mar 28 08:14 flume.conf&lt;BR /&gt;-rw-r--r-- 1 root root 1661 Mar 28 08:14 flume-conf.properties.template&lt;BR /&gt;-rw-r--r-- 1 root root 1197 Mar 28 08:14 flume-env.sh.template&lt;BR /&gt;-rw-r----- 1 root root 234 Jun 19 16:18 flume.keytab&lt;BR /&gt;-rw-r--r-- 1 root root 3074 Mar 28 08:14 log4j.properties&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Did I miss something in the configuration ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have this error:&lt;/P&gt;&lt;PRE&gt;Sink HDFS has been removed due to an error during configuration
java.lang.IllegalArgumentException: The keyTab file: /etc/flume-ng/conf/flume.keytab is nonexistent or can't read. Please specify a readable keytab file for Kerberos auth.
	at org.apache.flume.sink.hdfs.HDFSEventSink.authenticate(HDFSEventSink.java:542)
	at org.apache.flume.sink.hdfs.HDFSEventSink.configure(HDFSEventSink.java:247)
	at org.apache.flume.conf.Configurables.configure(Configurables.java:41)
	at org.apache.flume.node.AbstractConfigurationProvider.loadSinks(AbstractConfigurationProvider.java:418)
	at org.apache.flume.node.AbstractConfigurationProvider.getConfiguration(AbstractConfigurationProvider.java:103)
	at org.apache.flume.node.PollingPropertiesFileConfigurationProvider$FileWatcherRunnable.run(PollingPropertiesFileConfigurationProvider.java:140)
	at java.util.concurrent.Executors$RunnableAdapter.call(Executors.java:471)
	at java.util.concurrent.FutureTask.runAndReset(FutureTask.java:304)
	at java.util.concurrent.ScheduledThreadPoolExecutor$ScheduledFutureTask.access$301(ScheduledThreadPoolExecutor.java:178)
	at java.util.concurrent.ScheduledThreadPoolExecutor$ScheduledFutureTask.run(ScheduledThreadPoolExecutor.java:293)
	at java.util.concurrent.ThreadPoolExecutor.runWorker(ThreadPoolExecutor.java:1145)
	at java.util.concurrent.ThreadPoolExecutor$Worker.run(ThreadPoolExecutor.java:615)
	at java.lang.Thread.run(Thread.java:744)&lt;/PRE&gt;&lt;P&gt;Thanks for helping me &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 16 Sep 2022 09:00:36 GMT</pubDate>
    <dc:creator>Kulssaka</dc:creator>
    <dc:date>2022-09-16T09:00:36Z</dc:date>
    <item>
      <title>Twitter stream using flume on a securized cluster</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Twitter-stream-using-flume-on-a-securized-cluster/m-p/13826#M2005</link>
      <description>&lt;P&gt;Hello, I am trying to configure my twitter agent for flume on a kerberized cluster.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I followed the security manual, adding :&lt;/P&gt;&lt;PRE&gt;agentName.sinks.sinkName.hdfs.kerberosPrincipal = flume/fully.qualified.domain.name@YOUR-REALM.COM
agentName.sinks.sinkName.hdfs.kerberosKeytab = /etc/flume-ng/conf/flume.keytab&lt;/PRE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;with my own values.&lt;/P&gt;&lt;P&gt;As Kerberos principal I created both flume@HADDOP.COM and flume/_HOST@HADOOP.COM&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;kadmin.local: ktadd -k /etc/flume-ng/conf/flume.keytab flume/evl2400469.eu.verio.net@HADOOP.COM&lt;BR /&gt;Entry for principal flume/evl2400469.eu.verio.net@HADOOP.COM with kvno 2, encryption type Triple DES cbc mode with HMAC/sha1 added to keytab WRFILE:/etc/flume-ng/conf/flume.keytab.&lt;BR /&gt;Entry for principal flume/evl2400469.eu.verio.net@HADOOP.COM with kvno 2, encryption type DES cbc mode with CRC-32 added to keytab WRFILE:/etc/flume-ng/conf/flume.keytab&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;[root@evl2400469 ~]# kinit -p flume/evl2400469.eu.verio.net@HADOOP.COM&lt;BR /&gt;Password for flume/evl2400469.eu.verio.net@HADOOP.COM:&lt;BR /&gt;[root@evl2400469 ~]# klist&lt;BR /&gt;Ticket cache: FILE:/tmp/krb5cc_0&lt;BR /&gt;Default principal: flume/evl2400469.eu.verio.net@HADOOP.COM&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;[root@evl2400469 ~]# ls -l /etc/flume-ng/conf/&lt;BR /&gt;total 16&lt;BR /&gt;-rw-r--r-- 1 root root 0 Mar 28 08:14 flume.conf&lt;BR /&gt;-rw-r--r-- 1 root root 1661 Mar 28 08:14 flume-conf.properties.template&lt;BR /&gt;-rw-r--r-- 1 root root 1197 Mar 28 08:14 flume-env.sh.template&lt;BR /&gt;-rw-r----- 1 root root 234 Jun 19 16:18 flume.keytab&lt;BR /&gt;-rw-r--r-- 1 root root 3074 Mar 28 08:14 log4j.properties&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Did I miss something in the configuration ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have this error:&lt;/P&gt;&lt;PRE&gt;Sink HDFS has been removed due to an error during configuration
java.lang.IllegalArgumentException: The keyTab file: /etc/flume-ng/conf/flume.keytab is nonexistent or can't read. Please specify a readable keytab file for Kerberos auth.
	at org.apache.flume.sink.hdfs.HDFSEventSink.authenticate(HDFSEventSink.java:542)
	at org.apache.flume.sink.hdfs.HDFSEventSink.configure(HDFSEventSink.java:247)
	at org.apache.flume.conf.Configurables.configure(Configurables.java:41)
	at org.apache.flume.node.AbstractConfigurationProvider.loadSinks(AbstractConfigurationProvider.java:418)
	at org.apache.flume.node.AbstractConfigurationProvider.getConfiguration(AbstractConfigurationProvider.java:103)
	at org.apache.flume.node.PollingPropertiesFileConfigurationProvider$FileWatcherRunnable.run(PollingPropertiesFileConfigurationProvider.java:140)
	at java.util.concurrent.Executors$RunnableAdapter.call(Executors.java:471)
	at java.util.concurrent.FutureTask.runAndReset(FutureTask.java:304)
	at java.util.concurrent.ScheduledThreadPoolExecutor$ScheduledFutureTask.access$301(ScheduledThreadPoolExecutor.java:178)
	at java.util.concurrent.ScheduledThreadPoolExecutor$ScheduledFutureTask.run(ScheduledThreadPoolExecutor.java:293)
	at java.util.concurrent.ThreadPoolExecutor.runWorker(ThreadPoolExecutor.java:1145)
	at java.util.concurrent.ThreadPoolExecutor$Worker.run(ThreadPoolExecutor.java:615)
	at java.lang.Thread.run(Thread.java:744)&lt;/PRE&gt;&lt;P&gt;Thanks for helping me &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 16 Sep 2022 09:00:36 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/Twitter-stream-using-flume-on-a-securized-cluster/m-p/13826#M2005</guid>
      <dc:creator>Kulssaka</dc:creator>
      <dc:date>2022-09-16T09:00:36Z</dc:date>
    </item>
    <item>
      <title>Re: Twitter stream using flume on a securized cluster</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Twitter-stream-using-flume-on-a-securized-cluster/m-p/14132#M2006</link>
      <description>&lt;P&gt;Sounds like the user Flume is running as does not have UNIX permissions to read the keytab file. You have it chmod 0440 owned by root, so unless Flume is running as the root user, it will not be able to read that file.&lt;/P&gt;</description>
      <pubDate>Wed, 25 Jun 2014 03:15:56 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/Twitter-stream-using-flume-on-a-securized-cluster/m-p/14132#M2006</guid>
      <dc:creator>mpercy</dc:creator>
      <dc:date>2014-06-25T03:15:56Z</dc:date>
    </item>
    <item>
      <title>Re: Twitter stream using flume on a securized cluster</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Twitter-stream-using-flume-on-a-securized-cluster/m-p/14336#M2007</link>
      <description>&lt;P&gt;Yep, the keytab created had not the correct permission, I forgot it !&lt;/P&gt;</description>
      <pubDate>Fri, 27 Jun 2014 07:32:40 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/Twitter-stream-using-flume-on-a-securized-cluster/m-p/14336#M2007</guid>
      <dc:creator>Kulssaka</dc:creator>
      <dc:date>2014-06-27T07:32:40Z</dc:date>
    </item>
  </channel>
</rss>

