[ https://issues.apache.org/jira/browse/HADOOP-13255?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]
Xiao Chen updated HADOOP-13255: ------------------------------- Attachment: HADOOP-13255.04.patch Hm, I cannot reproduce the test failure of {{Cannot get a KDC reply}}.... But it's weird that client/host was picked up. I don't think this is a bug coming from this patch. Updating patch 4 to use client/host. {noformat} 2016-06-13 08:24:35,993 ERROR DefaultKdcHandler - Error occured while processing request: org.apache.kerby.kerberos.kerb.KrbException: Integrity check on decrypted field failed at org.apache.kerby.kerberos.kerb.crypto.enc.KeKiEnc.decryptWith(KeKiEnc.java:127) at org.apache.kerby.kerberos.kerb.crypto.enc.AbstractEncTypeHandler.decrypt(AbstractEncTypeHandler.java:150) at org.apache.kerby.kerberos.kerb.crypto.enc.AbstractEncTypeHandler.decrypt(AbstractEncTypeHandler.java:138) at org.apache.kerby.kerberos.kerb.crypto.EncryptionHandler.decrypt(EncryptionHandler.java:228) at org.apache.kerby.kerberos.kerb.common.EncryptionUtil.unseal(EncryptionUtil.java:136) at org.apache.kerby.kerberos.kerb.server.preauth.builtin.EncTsPreauth.verify(EncTsPreauth.java:51) at org.apache.kerby.kerberos.kerb.server.preauth.PreauthHandle.verify(PreauthHandle.java:46) at org.apache.kerby.kerberos.kerb.server.preauth.PreauthHandler.verify(PreauthHandler.java:101) at org.apache.kerby.kerberos.kerb.server.request.KdcRequest.preauth(KdcRequest.java:562) at org.apache.kerby.kerberos.kerb.server.request.KdcRequest.process(KdcRequest.java:181) at org.apache.kerby.kerberos.kerb.server.KdcHandler.handleMessage(KdcHandler.java:115) at org.apache.kerby.kerberos.kerb.server.impl.DefaultKdcHandler.handleMessage(DefaultKdcHandler.java:67) at org.apache.kerby.kerberos.kerb.server.impl.DefaultKdcHandler.run(DefaultKdcHandler.java:52) at java.util.concurrent.ThreadPoolExecutor.runWorker(ThreadPoolExecutor.java:1142) at java.util.concurrent.ThreadPoolExecutor$Worker.run(ThreadPoolExecutor.java:617) at java.lang.Thread.run(Thread.java:745) 2016-06-13 08:24:35,994 WARN LoadBalancingKMSClientProvider - KMS provider at [http://localhost:40216/kms/v1/] threw an IOException [Login failure for client/host from keytab /testptch/hadoop/hadoop-common-project/hadoop-kms/target/af48f139-dd06-4616-bedd-6b098449b503/keytab: javax.security.auth.login.LoginException: Cannot get a KDC reply]!! {noformat} > KMSClientProvider should check and renew tgt when doing delegation token > operations. > ------------------------------------------------------------------------------------ > > Key: HADOOP-13255 > URL: https://issues.apache.org/jira/browse/HADOOP-13255 > Project: Hadoop Common > Issue Type: Bug > Components: kms > Reporter: Xiao Chen > Assignee: Xiao Chen > Attachments: HADOOP-13255.01.patch, HADOOP-13255.02.patch, > HADOOP-13255.03.patch, HADOOP-13255.04.patch > > -- This message was sent by Atlassian JIRA (v6.3.4#6332) --------------------------------------------------------------------- To unsubscribe, e-mail: common-issues-unsubscr...@hadoop.apache.org For additional commands, e-mail: common-issues-h...@hadoop.apache.org