Table of Contents

Search

  1. Preface
  2. Introduction to Data Engineering Administration
  3. Authentication
  4. Running Mappings on a Cluster with Kerberos Authentication
  5. Authorization
  6. Cluster Configuration
  7. Cloud Provisioning Configuration
  8. Data Integration Service Processing
  9. Appendix A: Connections Reference
  10. Appendix B: Monitoring REST API

Data Engineering Administrator Guide

Data Engineering Administrator Guide

Configuring Apache Knox for Cloudera CDP Public Cloud

Configuring Apache Knox for Cloudera CDP Public Cloud

To use Apache Knox authentication with Cloudera CDP Public Cloud clusters, you must configure the Knox IDBroker service.
Add the proxy entries for the keytab user to the Knox IDBroker service that runs on the Data Lake cluster.
For example, add the following entries to the configuration page for
idbroker_kerberos_dt_proxyuser_block
:
“hadoop.proxyuser.csso_<keytab user>.groups": "*" "hadoop.proxyuser.csso_<keytab user>.hosts": "*" "hadoop.proxyuser.csso_<keytab user>.users": "spn_user"

0 COMMENTS

We’d like to hear from you!