Archives of Support Questions (Read Only)

This is an archived board for historical reference. Information and links may no longer be available or relevant
Announcements
This board is archived and read-only for historical reference. To ask a new question, please post a new topic on the appropriate active board.

Kerberos client for Windows workstations?

avatar
New Member

I am working with a Kerberized HDP 2.3 cluster that uses AD with Kerberos for strong authentication via Knox. Does the end user need to have a local Kerberos client installed on their Windows workstations to request the ticket? Or is it possible to enable SSO such that Kerberos ticket is issues as part of Windows domain login?

1 ACCEPTED SOLUTION

avatar
Guru

Once you setup one way trust and windows workstation is in domain, you don't need a separate kerberos client requesting tickets.

You can refer to http://hortonworks.com/blog/enabling-kerberos-hdp-active-directory-integration/ (slightly older but should work)

View solution in original post

1 REPLY 1

avatar
Guru

Once you setup one way trust and windows workstation is in domain, you don't need a separate kerberos client requesting tickets.

You can refer to http://hortonworks.com/blog/enabling-kerberos-hdp-active-directory-integration/ (slightly older but should work)