<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>question rest api via knox only admin can access in Archives of Support Questions (Read Only)</title>
    <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/rest-api-via-knox-only-admin-can-access/m-p/212140#M69595</link>
    <description>&lt;P&gt;Hi All:&lt;/P&gt;&lt;P&gt;when curl via knox i only can use admin (-u admin:admin-password) to access and can't use other account or will reply :&lt;/P&gt;&lt;P&gt;HTTP/1.1 401 Unauthorized
Date: Fri, 13 Oct 2017 05:45:38 GMT
Set-Cookie: rememberMe=deleteMe; Path=/gateway/default; Max-Age=0; Expires=Thu, 12-Oct-2017 05:45:38 GMT
WWW-Authenticate: BASIC realm="application"
Content-Length: 0
Server: Jetty(9.2.15.v20160210)&lt;/P&gt;&lt;P&gt;my command:&lt;/P&gt;&lt;P&gt;curl -i -k -u user1:Hadoop -X PUT 'https://knoxHost:8443/gateway/default/webhdfs/v1/user1/senfile1?op=CREATE'&lt;/P&gt;&lt;P&gt;folder permission:&lt;/P&gt;&lt;P&gt;drwxr-xr-x - user1 hdfs 0 2017-10-05 11:08 /user1&lt;/P&gt;&lt;P&gt;Knox users-ldif: &lt;/P&gt;&lt;P&gt;# entry for user1 &lt;/P&gt;&lt;P&gt;dn: uid=user1,ou=people,dc=hadoop,dc=apache,dc=org
objectclass:top
objectclass:person
objectclass:organizationalPerson
objectclass:inetOrgPerson
cn: user1
sn: user1
uid: user1
userPassword:Hadoop&lt;/P&gt;&lt;P&gt;Ranger (Sync Source is Unix) HDFS config:
add user1 to default all-path policy &lt;/P&gt;&lt;P&gt;Ranger knox config:
add user1 to default all-topology, service policy&lt;/P&gt;&lt;P&gt;if any wrong in my config?&lt;/P&gt;</description>
    <pubDate>Fri, 13 Oct 2017 13:00:54 GMT</pubDate>
    <dc:creator>sen_ke</dc:creator>
    <dc:date>2017-10-13T13:00:54Z</dc:date>
    <item>
      <title>rest api via knox only admin can access</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/rest-api-via-knox-only-admin-can-access/m-p/212140#M69595</link>
      <description>&lt;P&gt;Hi All:&lt;/P&gt;&lt;P&gt;when curl via knox i only can use admin (-u admin:admin-password) to access and can't use other account or will reply :&lt;/P&gt;&lt;P&gt;HTTP/1.1 401 Unauthorized
Date: Fri, 13 Oct 2017 05:45:38 GMT
Set-Cookie: rememberMe=deleteMe; Path=/gateway/default; Max-Age=0; Expires=Thu, 12-Oct-2017 05:45:38 GMT
WWW-Authenticate: BASIC realm="application"
Content-Length: 0
Server: Jetty(9.2.15.v20160210)&lt;/P&gt;&lt;P&gt;my command:&lt;/P&gt;&lt;P&gt;curl -i -k -u user1:Hadoop -X PUT 'https://knoxHost:8443/gateway/default/webhdfs/v1/user1/senfile1?op=CREATE'&lt;/P&gt;&lt;P&gt;folder permission:&lt;/P&gt;&lt;P&gt;drwxr-xr-x - user1 hdfs 0 2017-10-05 11:08 /user1&lt;/P&gt;&lt;P&gt;Knox users-ldif: &lt;/P&gt;&lt;P&gt;# entry for user1 &lt;/P&gt;&lt;P&gt;dn: uid=user1,ou=people,dc=hadoop,dc=apache,dc=org
objectclass:top
objectclass:person
objectclass:organizationalPerson
objectclass:inetOrgPerson
cn: user1
sn: user1
uid: user1
userPassword:Hadoop&lt;/P&gt;&lt;P&gt;Ranger (Sync Source is Unix) HDFS config:
add user1 to default all-path policy &lt;/P&gt;&lt;P&gt;Ranger knox config:
add user1 to default all-topology, service policy&lt;/P&gt;&lt;P&gt;if any wrong in my config?&lt;/P&gt;</description>
      <pubDate>Fri, 13 Oct 2017 13:00:54 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/rest-api-via-knox-only-admin-can-access/m-p/212140#M69595</guid>
      <dc:creator>sen_ke</dc:creator>
      <dc:date>2017-10-13T13:00:54Z</dc:date>
    </item>
    <item>
      <title>Re: rest api via knox only admin can access</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/rest-api-via-knox-only-admin-can-access/m-p/212141#M69596</link>
      <description>&lt;P&gt; &lt;A rel="user" href="https://community.cloudera.com/users/45191/senke.html" nodeid="45191"&gt;@Sen Ke&lt;/A&gt;,&lt;/P&gt;&lt;P&gt;Can you please attach the gateway.log (/var/log/knox/gateway.log)&lt;/P&gt;</description>
      <pubDate>Fri, 13 Oct 2017 19:29:32 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/rest-api-via-knox-only-admin-can-access/m-p/212141#M69596</guid>
      <dc:creator>asirna</dc:creator>
      <dc:date>2017-10-13T19:29:32Z</dc:date>
    </item>
    <item>
      <title>Re: rest api via knox only admin can access</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/rest-api-via-knox-only-admin-can-access/m-p/212142#M69597</link>
      <description>&lt;P&gt;&lt;A rel="user" href="https://community.cloudera.com/users/14200/asirna.html" nodeid="14200"&gt;@Aditya Sirna&lt;/A&gt; &lt;/P&gt;&lt;P&gt;2017-10-16 09:40:15,499 INFO hadoop.gateway (KnoxLdapRealm.java:getUserDn(691)) - Computed userDn: uid=user1,ou=people,dc=hadoop,dc=apache,dc=org using dnTemplate for principal: user1 &lt;/P&gt;&lt;P&gt;2017-10-16 09:40:15,509 INFO hadoop.gateway (KnoxLdapRealm.java:doGetAuthenticationInfo(203)) - Could not login: org.apache.shiro.authc.UsernamePasswordToken - user1, rememberMe=false (10.243.91.58) &lt;/P&gt;&lt;P&gt;2017-10-16 09:40:15,509 ERROR hadoop.gateway (KnoxLdapRealm.java:doGetAuthenticationInfo(205)) - Shiro unable to login: javax.naming.AuthenticationException: [LDAP: error code 49 - INVALID_CREDENTIALS: Bind failed: ERR_229 Cannot authenticate user uid=user1,ou=people,dc=hadoop,dc=apache,dc=org]&lt;/P&gt;</description>
      <pubDate>Mon, 16 Oct 2017 08:44:36 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/rest-api-via-knox-only-admin-can-access/m-p/212142#M69597</guid>
      <dc:creator>sen_ke</dc:creator>
      <dc:date>2017-10-16T08:44:36Z</dc:date>
    </item>
    <item>
      <title>Re: rest api via knox only admin can access</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/rest-api-via-knox-only-admin-can-access/m-p/212143#M69598</link>
      <description>&lt;P&gt;oh! i think i solved this problem,&lt;/P&gt;&lt;P&gt;after add user1, i restart knox all service, and start DEMO LDAP, and DEMO LDAP looks no restart,&lt;/P&gt;&lt;P&gt;so i stop DEMO LDAP then restart again, it's worked! &lt;/P&gt;&lt;P&gt;thanks &lt;A rel="user" href="https://community.cloudera.com/users/14200/asirna.html" nodeid="14200"&gt;@Aditya Sirna&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 16 Oct 2017 09:00:11 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/rest-api-via-knox-only-admin-can-access/m-p/212143#M69598</guid>
      <dc:creator>sen_ke</dc:creator>
      <dc:date>2017-10-16T09:00:11Z</dc:date>
    </item>
  </channel>
</rss>

