Support Questions

Find answers, ask questions, and share your expertise

Kerberos client for Windows workstations?

avatar
Contributor

I am working with a Kerberized HDP 2.3 cluster that uses AD with Kerberos for strong authentication via Knox. Does the end user need to have a local Kerberos client installed on their Windows workstations to request the ticket? Or is it possible to enable SSO such that Kerberos ticket is issues as part of Windows domain login?

1 ACCEPTED SOLUTION

avatar
Guru

Once you setup one way trust and windows workstation is in domain, you don't need a separate kerberos client requesting tickets.

You can refer to http://hortonworks.com/blog/enabling-kerberos-hdp-active-directory-integration/ (slightly older but should work)

View solution in original post

1 REPLY 1

avatar
Guru

Once you setup one way trust and windows workstation is in domain, you don't need a separate kerberos client requesting tickets.

You can refer to http://hortonworks.com/blog/enabling-kerberos-hdp-active-directory-integration/ (slightly older but should work)