Reverting r1615804 (HDFS-6717) from branch-2.5
git-svn-id: https://svn.apache.org/repos/asf/hadoop/common/branches/branch-2.5@1616032 13f79535-47bb-0310-9956-ffa450edef68
This commit is contained in:
parent
4d88744d51
commit
2931aee384
|
@ -47,21 +47,18 @@ HDFS NFS Gateway
|
||||||
The NFS-gateway uses proxy user to proxy all the users accessing the NFS mounts.
|
The NFS-gateway uses proxy user to proxy all the users accessing the NFS mounts.
|
||||||
In non-secure mode, the user running the gateway is the proxy user, while in secure mode the
|
In non-secure mode, the user running the gateway is the proxy user, while in secure mode the
|
||||||
user in Kerberos keytab is the proxy user. Suppose the proxy user is 'nfsserver'
|
user in Kerberos keytab is the proxy user. Suppose the proxy user is 'nfsserver'
|
||||||
and users belonging to the groups 'users-group1'
|
and users belonging to the groups 'nfs-users1'
|
||||||
and 'users-group2' use the NFS mounts, then in core-site.xml of the NameNode, the following
|
and 'nfs-users2' use the NFS mounts, then in core-site.xml of the NameNode, the following
|
||||||
two properities must be set and only NameNode needs restart after the configuration change
|
two properities must be set and only NameNode needs restart after the configuration change
|
||||||
(NOTE: replace the string 'nfsserver' with the proxy user name in your cluster):
|
(NOTE: replace the string 'nfsserver' with the proxy user name in your cluster):
|
||||||
|
|
||||||
----
|
----
|
||||||
<property>
|
<property>
|
||||||
<name>hadoop.proxyuser.nfsserver.groups</name>
|
<name>hadoop.proxyuser.nfsserver.groups</name>
|
||||||
<value>root,users-group1,users-group2</value>
|
<value>nfs-users1,nfs-users2</value>
|
||||||
<description>
|
<description>
|
||||||
The 'nfsserver' user is allowed to proxy all members of the 'users-group1' and
|
The 'nfsserver' user is allowed to proxy all members of the 'nfs-users1' and
|
||||||
'users-group2' groups. Note that in most cases you will need to include the
|
'nfs-users2' groups. Set this to '*' to allow nfsserver user to proxy any group.
|
||||||
group "root" because the user "root" (which usually belonges to "root" group) will
|
|
||||||
generally be the user that initially executes the mount on the NFS client system.
|
|
||||||
Set this to '*' to allow nfsserver user to proxy any group.
|
|
||||||
</description>
|
</description>
|
||||||
</property>
|
</property>
|
||||||
----
|
----
|
||||||
|
|
Loading…
Reference in New Issue