Support Questions
Find answers, ask questions, and share your expertise
Announcements
Alert: Welcome to the Unified Cloudera Community. Former HCC members be sure to read and learn how to activate your account here.

I got this Error : Invalid name provided (Mechanism level: KrbException: Cannot locate default realm) while submit workflow to oozie

Highlighted

Re: I got this Error : Invalid name provided (Mechanism level: KrbException: Cannot locate default realm) while submit workflow to oozie

New Contributor

I don't get you. what I need to run as root on kdc server?

Re: I got this Error : Invalid name provided (Mechanism level: KrbException: Cannot locate default realm) while submit workflow to oozie

Mentor

@Dinesh Jadhav

The command kadmin.local should be run as root on the KDC server

# kadmin.local 
Authenticating as principal root/admin@xxxxx with password. 
kadmin.local: listprincs

You should be able to see the principals

Re: I got this Error : Invalid name provided (Mechanism level: KrbException: Cannot locate default realm) while submit workflow to oozie

New Contributor

kadmin.local command is working fine I can see a list all principles. And I also went through config for kerberos but that example is deal with hiveServer, And I have to deal with kerberised oozie. So can you give me working code to communicate with kerberised oozie!.

Re: I got this Error : Invalid name provided (Mechanism level: KrbException: Cannot locate default realm) while submit workflow to oozie

Mentor

@Dinesh Jadhav

The error Server not found in Kerberos database usually occurs when KDC is unable to identify the entry for service principal requested when connecting to the service.

(Mechanism level: Server not found in Kerberos database (7) - LOOKING_UP_SERVER)

Can you share your the below-modified files;

  1. - krb5.conf
  2. - kdc.conf
  3. - kadm5.acl

Wat values do you have for these params:

oozie.service.HadoopAccessorService.kerberos.enabled 
local.realm 
oozie.service.HadoopAccessorService.keytab.file 
oozie.service.HadoopAccessorService.kerberos.principal 
oozie.authentication.type 
oozie.authentication.kerberos.principal 
oozie.authentication.kerberos.name.rules

oozie uses jaas configuration for kerberos login can you share it


Don't have an account?
Coming from Hortonworks? Activate your account here