[ 
https://issues.apache.org/jira/browse/AMBARI-22138?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16197398#comment-16197398
 ] 

Hudson commented on AMBARI-22138:
---------------------------------

FAILURE: Integrated in Jenkins build Ambari-trunk-Commit #8231 (See 
[https://builds.apache.org/job/Ambari-trunk-Commit/8231/])
AMBARI-22138. When regenerating keytab files for a service, (rlevas: 
[http://git-wip-us.apache.org/repos/asf?p=ambari.git&a=commit&h=5af1e539cce928b32fc5aca67c7bf8dbc2bd3c2e])
* (edit) 
ambari-server/src/main/java/org/apache/ambari/server/state/kerberos/AbstractKerberosDescriptor.java
* (edit) 
ambari-server/src/main/java/org/apache/ambari/server/controller/utilities/RemovableIdentities.java
* (edit) 
ambari-server/src/main/java/org/apache/ambari/server/serveraction/kerberos/PrepareEnableKerberosServerAction.java
* (edit) 
ambari-server/src/main/java/org/apache/ambari/server/state/kerberos/KerberosIdentityDescriptor.java
* (edit) 
ambari-server/src/test/java/org/apache/ambari/server/controller/utilities/KerberosIdentityCleanerTest.java
* (edit) 
ambari-server/src/main/java/org/apache/ambari/server/serveraction/kerberos/CreateKeytabFilesServerAction.java
* (edit) 
ambari-server/src/main/java/org/apache/ambari/server/serveraction/kerberos/PrepareDisableKerberosServerAction.java
* (edit) 
ambari-server/src/main/java/org/apache/ambari/server/serveraction/kerberos/KerberosServerAction.java
* (edit) 
ambari-server/src/main/java/org/apache/ambari/server/state/kerberos/AbstractKerberosDescriptorContainer.java
* (edit) 
ambari-server/src/test/java/org/apache/ambari/server/state/kerberos/KerberosDescriptorTest.java
* (edit) 
ambari-server/src/main/java/org/apache/ambari/server/serveraction/kerberos/CreatePrincipalsServerAction.java
* (edit) 
ambari-server/src/main/java/org/apache/ambari/server/controller/KerberosHelper.java
* (edit) 
ambari-server/src/main/java/org/apache/ambari/server/controller/KerberosHelperImpl.java
* (edit) 
ambari-server/src/main/java/org/apache/ambari/server/serveraction/kerberos/PrepareKerberosIdentitiesServerAction.java
* (edit) 
ambari-server/src/test/java/org/apache/ambari/server/controller/KerberosHelperTest.java


> When regenerating keytab files for a service, non-service-specific principals 
> are affected
> ------------------------------------------------------------------------------------------
>
>                 Key: AMBARI-22138
>                 URL: https://issues.apache.org/jira/browse/AMBARI-22138
>             Project: Ambari
>          Issue Type: Bug
>          Components: ambari-server
>    Affects Versions: 2.6.0
>            Reporter: Robert Levas
>            Assignee: Robert Levas
>            Priority: Critical
>              Labels: kerberos
>             Fix For: 3.0.0
>
>         Attachments: AMBARI-22138_trunk_01.patch
>
>
> When regenerating keytab files for a service, non-service-specific principals 
> are affected. For example, when regenerating the keytab files for HDFS using 
> the following ReST API call:
> {code:title=PUT 
> /api/v1/clusters/c1?regenerate_keytabs=all&regenerate_components=HDFS}
> {
>   "Clusters": {
>     "security_type": "KERBEROS"
>   }
> }
> {code}
> The following principals are affected:
> * HTTP/[email protected]
> * [email protected]
> * nn/[email protected]
> * [email protected]
> * HTTP/[email protected]
> * dn/[email protected]
> * HTTP/[email protected]
> * nn/[email protected]
> * [email protected]
> However only the following principals *should be*  affected:
> * nn/[email protected]
> * [email protected]
> * dn/[email protected]
> * nn/[email protected]



--
This message was sent by Atlassian JIRA
(v6.4.14#64029)

Reply via email to