[ 
https://issues.apache.org/jira/browse/HADOOP-10784?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=14069851#comment-14069851
 ] 

liyunzhang commented on HADOOP-10784:
-------------------------------------

Hi Alejandro Abdelnur - In simple authentication. you need add the "user.name" 
parameter in your request url when disallowing anonymous users .please mention 
it in the doc.
create key in simple authentication:
curl -X POST -d @createkey.json 
http://localhost:16000/kms/v1/keys?user.name=liyunzhang --header 
"Content-Type:application/json"
{
  "versionName" : "k1@0",
  "material" : "12345w=="
}
cat createkey.json
{"name":"k1",
"cipher":"123456",
"length":32,
"material":"123456",
"description":"kelly"
}

> Need add more in KMS document
> -----------------------------
>
>                 Key: HADOOP-10784
>                 URL: https://issues.apache.org/jira/browse/HADOOP-10784
>             Project: Hadoop Common
>          Issue Type: Improvement
>          Components: security
>    Affects Versions: 2.4.1
>            Reporter: liyunzhang
>            Priority: Minor
>
> Now i can only find the kms document in 
> http://aajisaka.github.io/hadoop-project/hadoop-kms/index.html, but it is 
> very simple. for example, i don't know how to enabling Kerberos HTTP SPNEGO 
> Authentication although i configure the kms-site.xml according to the 
> reference page.
> How to test it ?
> I send following request to KMS server:
>  curl -g --header  "Authorization:Negotiate123455" 
> http://localhost:16000/kms/v1/key/k1
> I read the KMS code and found that  i need add parameters in request header 
> and  the format is "Authorization:Negotiate $token". But how the token is 
> generated?



--
This message was sent by Atlassian JIRA
(v6.2#6252)

Reply via email to