Support Questions
Find answers, ask questions, and share your expertise
Announcements
Alert: Welcome to the Unified Cloudera Community. Former HCC members be sure to read and learn how to activate your account here.

Kerberos enabled hdfs issue

Highlighted

Kerberos enabled hdfs issue

New Contributor

Hi, I enabled the kereberos in my ambari standalone server for some testing. After seeting my own KDC in the same server and validations from Ambari UI it was kerberized successfully. Added the keytab for shell and now able to access the hdfs in terminal but no matter what I try the webhdfs is not working and throwing defective token deducted errors. HDP version: Version 2.6.2.2 Below error in browser: Browse Directory × Permission denied when trying to open /webhdfs/v1/?op=LISTSTATUS: org.apache.hadoop.security.authentication.client.AuthenticationException: GSSException: Defective token detected (Mechanism level: GSSHeader did not find the right tag)

2 REPLIES 2
Highlighted

Re: Kerberos enabled hdfs issue

New Contributor

Hi, 
This is because when you try to access using the browser there is no ticket.

You have to use Knox service to access to WEBHDFS service, and after set the credentials on the browser Knox will request a ticket for you.

Regards

Highlighted

Re: Kerberos enabled hdfs issue

Mentor

@thipuvaasan 

This is what you need to do to enable webhdfs 

Let me know the outcome

Don't have an account?
Coming from Hortonworks? Activate your account here