啓用Kerberos
配置嚮導
之前已經搭建好KDC服務,這裏勾選Existing MIT KDC,並勾選下面的三項後,可點擊下一步
配置Kerberos
按照之前創建的KDC,按照頁面填寫,KDC如果有多個可用逗號分隔
安裝Kerberos Client
默認點下一步
配置認證
默認下一步,記住祕鑰文件放置的目錄是/etc/security/keytabs
確認配置
默認點下一步
關閉服務
默認點下一步
應用Kerberos到整個集羣
默認點下一步
報錯:
stderr: We trust you have received the usual lecture from the local System Administrator. It usually boils down to these three things: #1) Respect the privacy of others. #2) Think before you type. #3) With great power comes great responsibility. sudo: no tty present and no askpass program specified stdout: Server action failed解決:
Configure Ambari Identity 着這步驟需要ambari用戶具有sudo權限
echo "ambari ALL=(root) NOPASSWD:ALL" >> /etc/sudoers