<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>question Re: Interfacing existing PKI with HDP and Ambari for authentification AND encryption in Archives of Support Questions (Read Only)</title>
    <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Interfacing-existing-PKI-with-HDP-and-Ambari-for/m-p/176799#M58310</link>
    <description>&lt;P&gt;Hello &lt;A rel="user" href="https://community.cloudera.com/users/16807/clementfaraon.html" nodeid="16807"&gt;@faraon clément&lt;/A&gt;,&lt;/P&gt;&lt;P&gt;You can use your existing PKI intrastructure for securing the communication channel inside as well as outside of your Hadoop cluster. But same can not be used for either authentication or data encryption.&lt;/P&gt;&lt;P&gt;Kerberos is the de-fecto standard accepted &amp;amp; supported by Hadoop services when it comes to user authentication.  Similarly you will have to use Ranger KMS to encrypt the data you are storing in HDFS.&lt;/P&gt;&lt;P&gt;Hope this helps !&lt;/P&gt;</description>
    <pubDate>Fri, 31 Mar 2017 03:39:02 GMT</pubDate>
    <dc:creator>VR46</dc:creator>
    <dc:date>2017-03-31T03:39:02Z</dc:date>
    <item>
      <title>Interfacing existing PKI with HDP and Ambari for authentification AND encryption</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Interfacing-existing-PKI-with-HDP-and-Ambari-for/m-p/176797#M58308</link>
      <description>&lt;P&gt;Good afternoon !

I 've juste read the HDFS Administration guide and Ranger KMS guide but I am faced with some questions:

- Can I use my existing PKI in order to allow data encryption AND user authentification in HDP ?

I know that I can use Kerberos or openLDAP, but those ways are still not very well understood for me
If someone could help me to better understand, Please !?&lt;/P&gt;&lt;P&gt;Thank you very Much&lt;/P&gt;&lt;P&gt;Clem&lt;/P&gt;</description>
      <pubDate>Tue, 28 Mar 2017 19:49:30 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/Interfacing-existing-PKI-with-HDP-and-Ambari-for/m-p/176797#M58308</guid>
      <dc:creator>clement_faraon</dc:creator>
      <dc:date>2017-03-28T19:49:30Z</dc:date>
    </item>
    <item>
      <title>Re: Interfacing existing PKI with HDP and Ambari for authentification AND encryption</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Interfacing-existing-PKI-with-HDP-and-Ambari-for/m-p/176798#M58309</link>
      <description>&lt;P&gt;Hello &lt;A rel="user" href="https://community.cloudera.com/users/16807/clementfaraon.html" nodeid="16807"&gt;@faraon clément&lt;/A&gt;,&lt;/P&gt;&lt;P&gt;You can use your existing PKI intrastructure for securing the communication channel inside as well as outside of your Hadoop cluster. But same can not be used for either authentication or data encryption.&lt;/P&gt;&lt;P&gt;Kerberos is the de-fecto standard accepted &amp;amp; supported by Hadoop services when it comes to user authentication.  Similarly you will have to use Ranger KMS to encrypt the data you are storing in HDFS.&lt;/P&gt;&lt;P&gt;Hope this helps !&lt;/P&gt;</description>
      <pubDate>Fri, 31 Mar 2017 03:39:01 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/Interfacing-existing-PKI-with-HDP-and-Ambari-for/m-p/176798#M58309</guid>
      <dc:creator>VR46</dc:creator>
      <dc:date>2017-03-31T03:39:01Z</dc:date>
    </item>
    <item>
      <title>Re: Interfacing existing PKI with HDP and Ambari for authentification AND encryption</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Interfacing-existing-PKI-with-HDP-and-Ambari-for/m-p/176799#M58310</link>
      <description>&lt;P&gt;Hello &lt;A rel="user" href="https://community.cloudera.com/users/16807/clementfaraon.html" nodeid="16807"&gt;@faraon clément&lt;/A&gt;,&lt;/P&gt;&lt;P&gt;You can use your existing PKI intrastructure for securing the communication channel inside as well as outside of your Hadoop cluster. But same can not be used for either authentication or data encryption.&lt;/P&gt;&lt;P&gt;Kerberos is the de-fecto standard accepted &amp;amp; supported by Hadoop services when it comes to user authentication.  Similarly you will have to use Ranger KMS to encrypt the data you are storing in HDFS.&lt;/P&gt;&lt;P&gt;Hope this helps !&lt;/P&gt;</description>
      <pubDate>Fri, 31 Mar 2017 03:39:02 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/Interfacing-existing-PKI-with-HDP-and-Ambari-for/m-p/176799#M58310</guid>
      <dc:creator>VR46</dc:creator>
      <dc:date>2017-03-31T03:39:02Z</dc:date>
    </item>
  </channel>
</rss>

