[ 
https://issues.apache.org/jira/browse/AMBARI-16171?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=15297677#comment-15297677
 ] 

Hudson commented on AMBARI-16171:
---------------------------------

FAILURE: Integrated in Ambari-trunk-Commit #4904 (See 
[https://builds.apache.org/job/Ambari-trunk-Commit/4904/])
Revert "AMBARI-16171. Changes to Phoenix QueryServer Kerberos (smohanty: 
[http://git-wip-us.apache.org/repos/asf?p=ambari.git&a=commit&h=e7b38ddd4f651eee59d43b297b854dcbf0412e02])
* 
ambari-server/src/test/java/org/apache/ambari/server/upgrade/UpgradeCatalog240Test.java
* 
ambari-server/src/main/java/org/apache/ambari/server/upgrade/AbstractUpgradeCatalog.java
* 
ambari-server/src/main/java/org/apache/ambari/server/upgrade/UpgradeCatalog240.java
* 
ambari-server/src/main/resources/common-services/HBASE/0.96.0.2.0/kerberos.json


> Changes to Phoenix QueryServer Kerberos configuration
> -----------------------------------------------------
>
>                 Key: AMBARI-16171
>                 URL: https://issues.apache.org/jira/browse/AMBARI-16171
>             Project: Ambari
>          Issue Type: Improvement
>            Reporter: Josh Elser
>            Assignee: Josh Elser
>         Attachments: AMBARI-16171.001.patch, AMBARI-16171.002.patch, 
> AMBARI-16171.003.patch, AMBARI-16171.006.patch, AMBARI-16171.007.patch
>
>
> The up-coming version of Phoenix will contain some new functionality to 
> support Kerberos authentication of clients via SPNEGO with the Phoenix Query 
> Server (PQS).
> Presently, Ambari will configure PQS to use the hbase service keytab which 
> will result in the SPNEGO authentication failing as the RFC requires that the 
> "primary" component of the Kerberos principal for the server is "HTTP". Thus, 
> we need to ensure that we switch PQS over to use the spnego.service.keytab as 
> the keytab and "HTTP/_HOST@REALM" as the principal.



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)

Reply via email to