<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>question What is the best way to secure S3A objects on HDP 2.5? in Archives of Support Questions (Read Only)</title>
    <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/What-is-the-best-way-to-secure-S3A-objects-on-HDP-2-5/m-p/129768#M55782</link>
    <description />
    <pubDate>Fri, 16 Sep 2022 11:10:17 GMT</pubDate>
    <dc:creator>Eran</dc:creator>
    <dc:date>2022-09-16T11:10:17Z</dc:date>
    <item>
      <title>What is the best way to secure S3A objects on HDP 2.5?</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/What-is-the-best-way-to-secure-S3A-objects-on-HDP-2-5/m-p/129768#M55782</link>
      <description />
      <pubDate>Fri, 16 Sep 2022 11:10:17 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/What-is-the-best-way-to-secure-S3A-objects-on-HDP-2-5/m-p/129768#M55782</guid>
      <dc:creator>Eran</dc:creator>
      <dc:date>2022-09-16T11:10:17Z</dc:date>
    </item>
    <item>
      <title>Re: What is the best way to secure S3A objects on HDP 2.5?</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/What-is-the-best-way-to-secure-S3A-objects-on-HDP-2-5/m-p/129769#M55783</link>
      <description>&lt;P&gt;&lt;A rel="user" href="https://community.cloudera.com/users/111/eorgad.html" nodeid="111"&gt;@eorgad&lt;/A&gt;&lt;/P&gt;&lt;P&gt;To protect the S3A access/secret keys, it is recommended that you use either: &lt;/P&gt;&lt;OL&gt;&lt;LI&gt;IAM role-based authentication (such as EC2 instance profile), or &lt;/LI&gt;&lt;LI&gt;the Hadoop Credential Provider Framework - securely storing them and accessing them through configuration. &lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;The Hadoop Credential Provider Framework allows secure "Credential Providers" to keep secrets outside Hadoop configuration files, storing them in encrypted files in local or Hadoop filesystems, and including them in requests. The &lt;A href="https://github.com/apache/hadoop/blob/trunk/hadoop-tools/hadoop-aws/src/site/markdown/tools/hadoop-aws/index.md"&gt;Hadoop-AWS Module&lt;/A&gt; documentation describes how to configure this properly.&lt;/P&gt;</description>
      <pubDate>Thu, 02 Mar 2017 23:39:57 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/What-is-the-best-way-to-secure-S3A-objects-on-HDP-2-5/m-p/129769#M55783</guid>
      <dc:creator>tmccuch</dc:creator>
      <dc:date>2017-03-02T23:39:57Z</dc:date>
    </item>
  </channel>
</rss>

