hbase service principal name resolves as hbase/ip-address@REALM.COM. But when we look at the list of principals in KDC, it lists the same SPN with hostname as expected hbase/hostname@REALM.COM. We do have skydns entries of datalake nodes added in etcd so the datalake nodes resolves with the hostnames. But still we're not able to figure this out.
While we try to authenticate to the SPN from local, it works fine. But only in a kubernetes cluster it uses the ip-address in SPN and fails since it couldn't one SPN in KDC. What could be the reason for this?
... View more