Support Questions
Find answers, ask questions, and share your expertise

Direct Integration with AD

Direct Integration with AD

New Contributor

I see that in 5.1 direct integration with the AD is possible. The documentation on integration with AD contains the cross realm trust using MIT local kerberos server. Which is available from early releases too.


Could you please explain whether there is any other way which is not documented for direct integration with AD?




Re: Direct Integration with AD

Super Collaborator
The current documentation for CM / CDH 5 covers being able to use direct to AD integration where Cloudera Manager maintains the Kerberos principals in AD. This does not require cross realm authentication.

This is not provided in the 4.x release.

What is it your are looking for? Manual management of principals in AD for cloudera manager? This is a very complicated and error prone approach to doing things. We do not document this approach as it generally causes more problems as change/add/delete of nodes from the topology becomes a point of human error causing potential outage.