[ 
https://issues.apache.org/jira/browse/AMBARI-20196?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=15886515#comment-15886515
 ] 

Hudson commented on AMBARI-20196:
---------------------------------

SUCCESS: Integrated in Jenkins build Ambari-branch-2.5 #1115 (See 
[https://builds.apache.org/job/Ambari-branch-2.5/1115/])
AMBARI-20196. Ambari should install the unlimited key JCE policy based (rlevas: 
[http://git-wip-us.apache.org/repos/asf?p=ambari.git&a=commit&h=23861e4b66ea2b918d84f45865f8383ac0fc3efd])
* (edit) 
ambari-server/src/main/java/org/apache/ambari/server/controller/AmbariManagementControllerImpl.java
* (edit) 
ambari-server/src/main/java/org/apache/ambari/server/agent/ExecutionCommand.java
* (edit) 
ambari-server/src/test/java/org/apache/ambari/server/stack/ComponentModuleTest.java
* (edit) ambari-agent/pom.xml
* (edit) 
ambari-server/src/main/java/org/apache/ambari/server/stack/ComponentModule.java
* (edit) 
ambari-server/src/main/resources/common-services/KERBEROS/1.10.3-10/package/scripts/kerberos_common.py
* (add) 
ambari-agent/src/main/java/org/apache/ambari/tools/jce/JcePolicyInfo.java
* (add) 
ambari-server/src/main/java/org/apache/ambari/server/state/UnlimitedKeyJCERequirement.java
* (edit) 
ambari-server/src/test/python/stacks/2.0.6/hooks/before-START/test_before_start.py
* (edit) 
ambari-server/src/main/resources/stacks/HDP/2.0.6/hooks/before-START/scripts/hook.py
* (edit) 
ambari-server/src/test/python/stacks/2.2/KERBEROS/test_kerberos_client.py
* (edit) 
ambari-server/src/main/resources/stacks/HDP/2.0.6/configuration/cluster-env.xml
* (add) 
ambari-common/src/main/python/resource_management/core/resources/jcepolicyinfo.py
* (edit) 
ambari-server/src/main/resources/stacks/HDP/2.0.6/hooks/before-START/scripts/params.py
* (edit) 
ambari-server/src/main/resources/stacks/PERF/1.0/services/KERBEROS/package/scripts/kerberos_client.py
* (edit) 
ambari-server/src/main/java/org/apache/ambari/server/state/ComponentInfo.java
* (edit) 
ambari-server/src/test/python/stacks/2.0.6/configs/secured_no_jce_name.json
* (edit) 
ambari-server/src/main/resources/common-services/KERBEROS/1.10.3-10/package/scripts/kerberos_client.py
* (edit) 
ambari-server/src/main/resources/stacks/HDP/2.0.6/hooks/before-START/scripts/shared_initialization.py


> Ambari should install the unlimited key JCE policy based on service 
> requirements even if cluster is not Kerberized
> ------------------------------------------------------------------------------------------------------------------
>
>                 Key: AMBARI-20196
>                 URL: https://issues.apache.org/jira/browse/AMBARI-20196
>             Project: Ambari
>          Issue Type: Bug
>          Components: ambari-agent, ambari-server
>    Affects Versions: 2.4.0
>            Reporter: Robert Levas
>            Assignee: Robert Levas
>              Labels: encryption, jce_policy, kerberos
>             Fix For: 2.5.0
>
>         Attachments: AMBARI-20196_branch-2.5_01.patch, 
> AMBARI-20196_branch-2.5_02.patch, AMBARI-20196_trunk_01.patch, 
> AMBARI-20196_trunk_02.patch, AMBARI-20196_trunk_03.patch, 
> AMBARI-20196_trunk_04.patch
>
>
> Ambari should install the unlimited key JCE policy based on service 
> requirements even if cluster is not Kerberized.  For example, if a service 
> needs the unlimited key JCE policy for an encryption task not related to 
> Kerberos.
> On a similar note, the unlimited key JCE policy is not being distributed to 
> the agents if Kerberos is enabled using the "manual" option - as opposed to 
> integrating with an existing KDC. 
> On a related note, Ambari Server host automatically unpacks JCE unlimited 
> during "ambari-server setup" (unless custom JDK is used).



--
This message was sent by Atlassian JIRA
(v6.3.15#6346)

Reply via email to