Support Questions
Find answers, ask questions, and share your expertise
Alert: Welcome to the Unified Cloudera Community. Former HCC members be sure to read and learn how to activate your account here.

How to connect to Kerberos HDP through kubernetes


How to connect to Kerberos HDP through kubernetes


I am trying to connect to Hive services on HDP-3.1.0 kerberose cluster through Superset Application using Hive Connection String

We have tried by adding conf files and keytab files inside /etc/and /etc/security/keytab in master as well as worker node but issue still persist

We tried adding the same in container but we don't have root access to add those files.

Below is the kubernetes cluster version information for ubuntu

Client Version: version.Info{Major:"1", Minor:"13", GitVersion:"v1.13.2", GitCommit:"cff46ab41ff0bb44d8584413b598ad8360ec1def", GitTreeState:"clean", BuildDate:"2019-01-10T23:35:51Z", GoVersion:"go1.11.4", Compiler:"gc", Platform:"linux/amd64"} Server Version: version.Info{Major:"1", Minor:"13", GitVersion:"v1.13.3", GitCommit:"721bfa751924da8d1680787490c54b9179b1fed0", GitTreeState:"clean", BuildDate:"2019-02-01T20:00:57Z", GoVersion:"go1.11.5", Compiler:"gc", Platform:"linux/amd64"}

We are facing below issue

ERROR: {"error": "Connection failed!\n\nThe error message returned was:\nCould not start SASL: b'Error in sasl_client_start (-1) SASL(-1): generic failure: GSSAPI Error: Unspecified GSS failure. Minor code may provide more information (No Kerberos credentials available (default cache: FILE:/tmp/krb5cc_1000))'"}

Re: How to connect to Kerberos HDP through kubernetes


@Swapnil Sonawane

Your problem seems to be vast! The /etc/security/keytabs should be mounted as persistent volumes PVC stateful or use secrets to mount the files.

You will need to share your deployment.yaml or whatever config HELM or other you are using,

Don't have an account?
Coming from Hortonworks? Activate your account here