Support Questions
Find answers, ask questions, and share your expertise
Announcements
Alert: Welcome to the Unified Cloudera Community. Former HCC members be sure to read and learn how to activate your account here.

How to enabe Enable HTTP Security Headers on the hadoop cluster

Highlighted

How to enabe Enable HTTP Security Headers on the hadoop cluster

Explorer

Hi,

 

I have a hadoop cluster that is running on our environment, In which we are running a vulnerability scan to make sure there are no security issues on the servers. We got a vulnerability that the http headers are not set for the namenode server on port 3000. I tired adding the security headers property on the hadoop cluster and restarted the services. After rerunning the scan its giving the same vulnerability for the namenode server on port 3000. Is there a way that we can configure  HTTP Security Headers on the hadoop cluster or any specific confiration that can be done on the namenode server alone.  Your guidance are much appreciated.

 

Thanks

GophalRaj

1 REPLY 1
Highlighted

Re: How to enabe Enable HTTP Security Headers on the hadoop cluster

@Gophalr This document may be helpful but I am not 100% sure.  There are several settings required for basic http authentication including some for headers:

 

https://hadoop.apache.org/docs/current/hadoop-project-dist/hadoop-common/HttpAuthentication.html

 

 

If this answer resolves your issue or allows you to move forward, please choose to ACCEPT this solution and close this topic. If you have further dialogue on this topic please comment here or feel free to private message me. If you have new questions related to your Use Case please create separate topic and feel free to tag me in your post.  

 

Thanks,


Steven @ DFHZ

 


 


If this answer resolves your issue or allows you to move forward, please choose to ACCEPT this solution and close this topic. If you have further dialogue on this topic please comment here or feel free to private message me. If you have new questions related to your Use Case please create separate topic and feel free to tag me in your post.  


 


Thanks,



Steven

Don't have an account?
Coming from Hortonworks? Activate your account here