06-01-2015 07:13 AM
We have a Kerberos enabled cluster with x-realm authentication on our windows domain. We want to use the Impala Odbc connection in a C# .NET website running under IIS but we are unsure how to authenticate this. We can run it under a domain account but this requires manual entry of the username and password in order to refresh the ticket. Does anyone know our options around this?
06-26-2015 12:51 PM
If your IIS service is using a domain service account, it should already have a valib Kerberos ticket. In that case, your connection string to Impala doesn't need username and password. I should be something like the below:
The impala principal is usually impala/<datanode_where_impala_is_running_fqdn>@YOUR.DOMAIN.REALM
If the IIS service is running with a LOCAL account it won't have a ticket to successfully connect to Impala. If that's the case, you have two options:
Hope this helps.