Member since
12-09-2015
103
Posts
82
Kudos Received
13
Solutions
My Accepted Solutions
Title | Views | Posted |
---|---|---|
781 | 04-17-2016 06:56 AM | |
464 | 04-13-2016 11:39 AM | |
811 | 03-17-2016 10:01 AM | |
1137 | 02-22-2016 06:50 AM | |
400 | 02-17-2016 09:36 AM |
05-31-2016
07:27 PM
1 Kudo
Alex Raj Run http://cm_server_host:7180/api/v11/clusters You should get clustername in output.
... View more
05-10-2016
10:43 AM
@Andrea D'Orio
Thanks for checking.
Apologies for late response as I got busy with something.
Here are the details which you have requested.
Did you set hadoop.security.authorization to true in core-site.xml using Ambari?
Yes I did that using Ambari.
Can you post the value of the property security.job.client.protocol.acl?
Please find the details in the screenshot below. It was set to * in ambari.
Did you configure property security.client.protocol.acl?
It was already configured to * in ambari. Please refer to screenshot above.
After setting the properties and restarting all the service thru Ambari did you check the core-site.xml and hadoop-policy.xml manually in order to verify the values?
Yes above screenshot is taken after stopping and starting all the services from ambari.
... View more
04-20-2016
04:59 AM
I have HDP 2.3.4 and Ranger 0.5 I have enabled only Audit to HDFS and it is working fine. Ensure that Destination HDFS Directory is set correctly. However I have read somewhere that HDP2.3 onwards need solr for storing ranger audits. So even I am confused now. Anyway Solr is recommended for storing audits.
... View more
04-19-2016
05:21 AM
Please accept best answer. Also do comment if you need additional details.
... View more
04-19-2016
03:19 AM
@Sadek M If I understand this correctly, you are trying to use TDE with hdfs user. This will not work because hdfs user is blacklisted for TDE operations. Here is note from Hortonworks Doc. For separation of administrative roles, do not use the hdfs user to create encryption zones. Instead, designate another administrative account for creating encryption keys and zones. See Creating an HDFS Admin User for more information.
... View more
04-18-2016
07:10 AM
1 Kudo
Ranger works fine without solr. You can save Ranger audit on HDFS as well as DB.
... View more
04-17-2016
06:56 AM
3 Kudos
@Sadek M I was able to resolve it after restarting Ranger Service. Ambari does not prompt for restarting Ranger service, but prompt for only Ranger Kms. Be sure to edit the repository username from Ranger UI by logging in as keyadmin user. Changing user from Ambari does not work. Set values of below to * hadoop.kms.proxyuser.hive.users=* hadoop.kms.proxyuser.oozie.users=* hadoop.kms.proxyuser.HTTP.users=* hadoop.kms.proxyuser.ambari.users=* hadoop.kms.proxyuser.yarn.users=* hadoop.kms.proxyuser.hive.hosts=* hadoop.kms.proxyuser.oozie.hosts=* hadoop.kms.proxyuser.HTTP.hosts=* hadoop.kms.proxyuser.ambari.hosts=* hadoop.kms.proxyuser.yarn.hosts=*
... View more
04-15-2016
11:17 AM
Same problem here on HDP 2.3.4 with Ambari 2.2.0 Changing hadoop.kms.authentication.type to simple works fine.
... View more
04-14-2016
04:57 PM
Can anyone help me with working demo of enabling service level authorisation as mentioned here? I am unable to make it work on HDP 2.3.4.0 with Ambari 2.2.0. I can run yarn jobs from any user irrespective of the acl setting(security.job.client.protocol.acl). However, ranger plugin policies are working fine. I tried this with and without enabling ranger plugin but it is not working in both the cases. In case of apache hadoop service level authorisation is working fine as per the above document.
... View more
04-13-2016
05:52 PM
Can you help me with working demo of enabling service level authorisation for yarn. I followed the steps in https://hadoop.apache.org/docs/current/hadoop-project-dist/hadoop-common/ServiceLevelAuth.html#Enable_Service_Level_Authorization but it is not working. I can run yarn jobs from any user irrespective of the acl settings. I tried this in HDP 2.3.4.0 with Ambari 2.2.0 FYI, ranger plugin policies are working fine. I tried this with and without enabling ranger plugin. However service level authorisation is working fine in case of apache hadoop.
... View more
04-13-2016
11:39 AM
Click on hosts menu on ambari web UI Click on host where you want to add client. On the host page click on add button as below.
... View more
04-13-2016
10:44 AM
@Safak Kapci As far as I know, you have to manually add clients using Ambari.
... View more
04-13-2016
03:52 AM
2 Kudos
Hi @prswamy t After ambari reset run host cleanup script and following yum remove commands on all hosts python /usr/lib/python2.6/site-packages/ambari_agent/HostCleanup.py --silent
yum remove zookeep*
yum remove hdp-select hdp* Now you are good to restart the installation.
... View more
04-05-2016
04:49 AM
@Paul Tamburello I am wondering how difficult it will be to change the hostname of these servers back to what they were before. See this http://docs.aws.amazon.com/AWSEC2/latest/UserGuide/set-hostname.html
... View more
04-04-2016
01:26 PM
@Benjamin Leonhardi Can you help me with working demo of enabling service level authorization for yarn. I have followed the steps in https://hadoop.apache.org/docs/current/hadoop-project-dist/hadoop-common/ServiceLevelAuth.html#Enable_Service_Level_Authorization but it is not working. I can run yarn jobs from any user irrespective of the acl settings. I need this in HDP 2.3.4.0 with Ambari 2.2.0
... View more
03-31-2016
02:30 PM
Thanks a lot.
... View more
03-31-2016
07:54 AM
@Bilal Nasir 😧 does not seems to go well for file name. Please try after removing colon(:) from your file name.
... View more
03-29-2016
05:35 PM
If your cluster is Ambari managed then use Ambari to install Ranger
... View more
03-28-2016
01:21 PM
@priyanka vijayakumar It depends on how much you have to spare. My laptop has 8 GB RAM so I have given 4 GB RAM to Sandbox. In case of CPU I have 4 core. So I have given 1 to 2 core to sandbox.
... View more
03-25-2016
03:43 PM
In sandbox NAT should be used. See this https://community.hortonworks.com/questions/23453/yum-install-doesnt-work-couldnt-resolve-host-mirro.html#answer-23454
... View more
03-25-2016
12:10 PM
Are you using sandbox?
... View more
03-22-2016
07:08 AM
2 Kudos
Try ssh to 192.168.91.128 and confirm that password is not required.
... View more
03-21-2016
03:45 PM
Could be memory issue. Can you check /var/log/messages for Kernel OOM killer. Also please give details of your environment. (OS, RAM, nodes etc)
... View more
03-21-2016
03:38 PM
Have you also changed the value of min.user.id. ? Or you can change the id of hive user above 1000
... View more
03-17-2016
10:01 AM
3 Kudos
You need to add network adapter to VM using NAT. You current ip suggest that you are using host only network. Host only network will not allow internet access. See below:
... View more
03-17-2016
09:55 AM
Can you check that hostname fqdn and ip address matching is correct?
... View more
03-17-2016
08:08 AM
@Eom Suhyuk
Can you find anything on these 2 files?
/var/run/ambari-server/bootstrap/12/bootstrap.err
/var/run/ambari-server/bootstrap/12/bootstrap.out
Please paste the contents of these files or upload them here. @Rahul Gupta may be right see this https://issues.apache.org/jira/browse/AMBARI-12456
... View more