[
https://issues.apache.org/jira/browse/YARN-8865?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16652986#comment-16652986
]
Wilfred Spiegelenburg commented on YARN-8865:
---------------------------------------------
[~daryn]: I changed the approach to add the token and make sure it expires.
Even if the HDFS code would be using the ADTSM is will not be affected. The
token is restored in this version of the patch and marked as expired (renewal
date and max date are set to 0, password is a null array).
I looked at all different implementations that are using the ADTSM:
* HDFS uses its own DelegationTokenSecretManager which overrides the changed
method. The same change could be applied in that class but I have left it for
now. Let me know if I should add it there too.
* the JHS and RM use the ADTSM and through the recover they call the method,
tests are updated
Can you please review? [^YARN-8865.003.patch]
> RMStateStore contains large number of expired RMDelegationToken
> ---------------------------------------------------------------
>
> Key: YARN-8865
> URL: https://issues.apache.org/jira/browse/YARN-8865
> Project: Hadoop YARN
> Issue Type: Bug
> Components: resourcemanager
> Affects Versions: 3.1.0
> Reporter: Wilfred Spiegelenburg
> Assignee: Wilfred Spiegelenburg
> Priority: Major
> Attachments: YARN-8865.001.patch, YARN-8865.002.patch,
> YARN-8865.003.patch
>
>
> When the RM state store is restored expired delegation tokens are restored
> and added to the system. These expired tokens do not get cleaned up or
> removed. The exact reason why the tokens are still in the store is not clear.
> We have seen as many as 250,000 tokens in the store some of which were 2
> years old.
> This has two side effects:
> * for the zookeeper store this leads to a jute buffer exhaustion issue and
> prevents the RM from becoming active.
> * restore takes longer than needed and heap usage is higher than it should be
> We should not restore already expired tokens since they cannot be renewed or
> used.
--
This message was sent by Atlassian JIRA
(v7.6.3#76005)
---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]