[
https://issues.apache.org/jira/browse/HADOOP-10784?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=14069851#comment-14069851
]
liyunzhang commented on HADOOP-10784:
-------------------------------------
Hi Alejandro Abdelnur - In simple authentication. you need add the "user.name"
parameter in your request url when disallowing anonymous users .please mention
it in the doc.
create key in simple authentication:
curl -X POST -d @createkey.json
http://localhost:16000/kms/v1/keys?user.name=liyunzhang --header
"Content-Type:application/json"
{
"versionName" : "k1@0",
"material" : "12345w=="
}
cat createkey.json
{"name":"k1",
"cipher":"123456",
"length":32,
"material":"123456",
"description":"kelly"
}
> Need add more in KMS document
> -----------------------------
>
> Key: HADOOP-10784
> URL: https://issues.apache.org/jira/browse/HADOOP-10784
> Project: Hadoop Common
> Issue Type: Improvement
> Components: security
> Affects Versions: 2.4.1
> Reporter: liyunzhang
> Priority: Minor
>
> Now i can only find the kms document in
> http://aajisaka.github.io/hadoop-project/hadoop-kms/index.html, but it is
> very simple. for example, i don't know how to enabling Kerberos HTTP SPNEGO
> Authentication although i configure the kms-site.xml according to the
> reference page.
> How to test it ?
> I send following request to KMS server:
> curl -g --header "Authorization:Negotiate123455"
> http://localhost:16000/kms/v1/key/k1
> I read the KMS code and found that i need add parameters in request header
> and the format is "Authorization:Negotiate $token". But how the token is
> generated?
--
This message was sent by Atlassian JIRA
(v6.2#6252)