[
https://issues.apache.org/jira/browse/HBASE-7820?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=13579649#comment-13579649
]
Andrew Purtell commented on HBASE-7820:
---------------------------------------
I skimmed the 'multirealm.pdf' attachment on HADOOP-9296. Be aware that every
RegionServer authenticates users in an HBase cluster.
The code changes for 0.94 look ok as they mirror what is being done over in
Hadoop RPC. Insure that HBase can compile against both versions of Hadoop 1 and
Hadoop 2 in the 0.94 POM with the changes included.
Also, we will need a trunk patch because changes need to be committed to trunk
before any branch.
> Authenticating users from different realm without a trust relationship
> ----------------------------------------------------------------------
>
> Key: HBASE-7820
> URL: https://issues.apache.org/jira/browse/HBASE-7820
> Project: HBase
> Issue Type: Improvement
> Components: security
> Reporter: Benoy Antony
> Attachments: HBASE-7820-0.94.patch
>
>
> HBase servers are part of the Hadoop domain, controlled by Hadoop Active
> Directory.
> The users belong to the CORP domain, controlled by the CORP Active Directory.
> In the absence of a one way trust from HADOOP DOMAIN to CORP DOMAIN, how will
> HBase servers authenticate CORP users ?
> This is the HBase equivalent of HADOOP-9296
--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators
For more information on JIRA, see: http://www.atlassian.com/software/jira