Member since
10-04-2016
69
Posts
6
Kudos Received
5
Solutions
My Accepted Solutions
Title | Views | Posted |
---|---|---|
4945 | 03-23-2017 08:41 AM | |
2348 | 01-26-2017 07:22 PM | |
1563 | 12-23-2016 12:07 PM | |
5522 | 12-21-2016 01:54 PM | |
1356 | 12-05-2016 06:37 AM |
12-21-2016
12:52 PM
Ben, CM did a good job on merging HTTP principals in oozie.keytab. However, my issue is the proxy. I got http 403 error on proxy UI, but not with two individual oozier server web UI.
... View more
12-21-2016
12:26 PM
Yes. I enabled Oozie HA via CM.
... View more
12-21-2016
12:25 PM
1 Kudo
I checked oozie.keytab which has http principals for both proxy and local host, so the key tab is generated fine. However, Web UI "Load Balancer" gives me HTTP Status 403 - GSSException: Failure unspecified at GSS-API level - Checksum failed. However, both individual OOzie Web UIs return fine. I am using HAProxy. The proxy URL worked fine before enabling Kerberos. Is there any specific setting I should do in HAProxy?
... View more
12-21-2016
10:16 AM
I am on CDH 5.9.0 and using Cloudera Manager integrated with Active Directory to manage Kerberos ticket automatically. It is great until I am trying to enable Oozie HA via HAProxy. How could I tell CM to generated HTTP keytab for oozie servers that contains HAProxy principal? I can do it manually. However, with CM Active Directory integration, I can't find a way to do so since I have no control of the keytab locations.
... View more
Labels:
- Labels:
-
Apache Oozie
-
Kerberos
12-05-2016
08:05 PM
Reference: http://www.cloudera.com/documentation/enterprise/latest/topics/sg_auth_overview.html#concept_zkr_5h2_bt http://www.cloudera.com/documentation/enterprise/latest/topics/cm_sg_intro_kerb.html http://blog.cloudera.com/blog/2014/07/new-in-cloudera-manager-5-1-direct-active-directory-integration-for-kerberos-authentication/ My question is how to configure AD OU admin user. This user has to have permissions to modify LDAP also. I just can't find anything on this. I got permission denied on ldapadd when generating the keytabs. Could someone help me on how to set this user up in both AD domain and AD LDAP?
... View more
Labels:
- Labels:
-
Kerberos
12-05-2016
06:37 AM
More: In Azure, /mnt on /dev/sdb1 is not persistent. $ cat /mnt/resource/DATALOSS_WARNING_README.txt WARNING: THIS IS A TEMPORARY DISK. Any data stored on this drive is SUBJECT TO LOSS and THERE IS NO WAY TO RECOVER IT. Please do not use this disk for storing any personal or application data. For additional details to please refer to the MSDN documentation at : http://msdn.microsoft.com/en-us/library/windowsazure/jj672979.aspx
... View more
12-04-2016
07:57 PM
I installed CDH 5.9.0 in Azure Virtual Machine. Every time I restart the VM, Name Node failed to restart due to Name Node not formatted issue. It seems that the cluster can't remember what has bee done after each VM restart. I had to format the Name Node all over again. I check data.dir and name.dir, and they are all defined. There is a similar issue found, but I installed CDH manually via CM, not using any template. http://stackoverflow.com/questions/36140311/cloudera-start-services-namenode-not-formatted/36391569
... View more
Labels:
- Labels:
-
Cloudera Manager
11-11-2016
07:15 PM
That is exactly I put in a hybrid solution. Just need to match CDH Kafka version with Confluence version.
... View more
10-28-2016
04:50 PM
I am trying to do data ingestion btw HDFS and Kafka. There are a few options: Conflunent Connect and Linkedin Gobblin. However, both requires Kafka schema registry. I can't find it in CDH distro. Could someone shed some light on this?
... View more
Labels:
- « Previous
- Next »