We are using HDP 3.1 version to set a KAFKA cluster. We cannot use Zookeeper kerberos authentication.
Have implemented Zookeeper authentication using the DIGEST-MD5 SASL mechanism with locally stored credentials. for client to server following the below link.
Post setting up the client to server Zookeeper authentication have run the zookeeper-security-migration.sh from KAFKA bin directory to set the ACLs for kafka user.
There is a znode called "ambari-metrics-cluster" under root (/) in Zookeeper which is created Ambari Metrics. These znodes have "world:anyone:ALL" ACL set for them. With that said wanted to check on two things: