@Alex Miller - Intent is to keep all those services behind Knox so that they require authentication for anyone requesting. Except for one application on the server that would bypass Knox. People using this application would authenticate via that application using LDAP/secure impersonation, and maintain Hadoop cluster security integrity. Maybe a better way to phrase what I am asking is "Can one configure Knox to allow a particular server to bypass Knox authentication?" This server would be doing its own authentication equivalent to that of Knox.
... View more