[37566] in Kerberos

home help back first fref pref prev next nref lref last post

Hadoop-Kerberos aunthentication flow

daemon@ATHENA.MIT.EDU (Aneela Saleem)
Tue Jul 12 12:44:19 2016

MIME-Version: 1.0
From: Aneela Saleem <aneela@platalytics.com>
Date: Tue, 12 Jul 2016 17:20:26 +0500
Message-ID: <CAC1K3K8JpJDcQSDKvwOPmUZmC3VeqD=nGmvv6GVhfCciJeLocw@mail.gmail.com>
To: kerberos@mit.edu
Content-Type: multipart/mixed; boundary=94eb2c12474e487b1605376f4b2c
Errors-To: kerberos-bounces@mit.edu

--94eb2c12474e487b1605376f4b2c
Content-Type: text/plain; charset=UTF-8

Hi all,

I have configured Kerberos with Hadoop. I'm facing difficulty in mapping
the Kerberos architecture and whole flow of authentication to my
application. Following is my usecase:

We have a web application that calls backend services, which communicates
with Hadoop ecosystem internally. Now i don't have clear idea how the
kerberos aunthentication will take place, where the tokens will be stored
i.e., whether client-side or server side. How the credential cache would be
managed,when two or more users access the application and access hadoop,
because when we do kinit the old credential cache is replaced by the new
one. What would be the complete flow?

Please see the attached image.

--94eb2c12474e487b1605376f4b2c
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

--94eb2c12474e487b1605376f4b2c--

home help back first fref pref prev next nref lref last post