Common Content for Data Engineering
- Common Content for Data Engineering 10.5.3
- All Products
SwitchToKerberosMode <-administratorName|-ad> administrator_name <-ServiceRealmName|-srn> realm_name_of_node_spn <-UserRealmName|-urn> realm_name_of_user_spn [<-SPNShareLevel|-spnSL> SPNShareLevel PROCESS|NODE]
Option
| Argument
| Description
|
---|---|---|
-administratorName
-ad
| administrator_name
| Required. User name for the domain administrator account that is created when you configure Kerberos authentication. Specify the name of an account that exists in Active Directory.
After you configure Kerberos authentication, this user is included in the
_infaInternalNamespace security domain that the command creates.
If the domain uses a single Kerberos realm to authenticate users, specify the samAccount name.
If the domain uses Kerberos cross realm authentication, specify the fully qualified user principal name, including the realm name. For example:
sysadmin@COMPANY.COM
|
-ServiceRealmName
-srn
| realm_name_of_node_spn
| Required. Name of the Kerberos realm that the domain uses to authenticate users. The realm name must be in uppercase and is case-sensitive.
To configure Kerberos cross realm authentication, specify the name of each Kerberos realm that the domain uses to authenticate users, separated by a comma. For example:
COMPANY.COM,EAST.COMPANY.COM,WEST.COMPANY.COM
Use an asterisk as a wildcard character before a realm name to include all realms that include the name. For example, specify the following value to include all realms that include the EAST.COMPANY.COM name:
*EAST.COMPANY.COM
|
-UserRealmName
-urn
| realm_name_of_user_spn
| Required. Name of the Kerberos realm that the domain uses to authenticate users. The realm name must be in uppercase and is case-sensitive.
To configure Kerberos cross realm authentication, specify the name of each Kerberos realm that the domain uses to authenticate users, separated by a comma. For example:
COMPANY.COM,EAST.COMPANY.COM,WEST.COMPANY.COM
Use an asterisk as a wildcard character before a realm name to include all realms that include the name. For example, specify the following value to include all realms that include the EAST.COMPANY.COM name:
*EAST.COMPANY.COM
|
SPNShareLevel
-spnSL
| SPNShareLevel
PROCESS|NODE]
| Optional. Indicates the service principal level for the domain. Set the property to one of the following levels:
Default is process.
|