HADOOP-11175. Fix several issues of hadoop security configuration in user doc. Contributed by Yi Liu.

(cherry picked from commit 1123a06e36)
This commit is contained in:
cnauroth 2014-10-09 11:10:23 -07:00
parent 7056e50c21
commit 5af4c021cc
2 changed files with 11 additions and 12 deletions

View File

@ -620,6 +620,9 @@ Release 2.6.0 - UNRELEASED
HADOOP-11179. Java untar should handle the case that the file entry comes HADOOP-11179. Java untar should handle the case that the file entry comes
without its parent directory entry. (Craig Welch via zjshen) without its parent directory entry. (Craig Welch via zjshen)
HADOOP-11175. Fix several issues of hadoop security configuration in user
doc. (Yi Liu via cnauroth)
Release 2.5.1 - 2014-09-05 Release 2.5.1 - 2014-09-05
INCOMPATIBLE CHANGES INCOMPATIBLE CHANGES

View File

@ -402,8 +402,8 @@ Configuration for <<<conf/core-site.xml>>>
| <<<dfs.namenode.kerberos.principal>>> | nn/_HOST@REALM.TLD | | | <<<dfs.namenode.kerberos.principal>>> | nn/_HOST@REALM.TLD | |
| | | Kerberos principal name for the NameNode. | | | | Kerberos principal name for the NameNode. |
*-------------------------+-------------------------+------------------------+ *-------------------------+-------------------------+------------------------+
| <<<dfs.namenode.kerberos.https.principal>>> | host/_HOST@REALM.TLD | | | <<<dfs.namenode.kerberos.internal.spnego.principal>>> | HTTP/_HOST@REALM.TLD | |
| | | HTTPS Kerberos principal name for the NameNode. | | | | HTTP Kerberos principal name for the NameNode. |
*-------------------------+-------------------------+------------------------+ *-------------------------+-------------------------+------------------------+
Configuration for <<<conf/hdfs-site.xml>>> Configuration for <<<conf/hdfs-site.xml>>>
@ -416,16 +416,16 @@ Configuration for <<<conf/hdfs-site.xml>>>
*-------------------------+-------------------------+------------------------+ *-------------------------+-------------------------+------------------------+
| <<<dfs.namenode.secondary.https-port>>> | <50470> | | | <<<dfs.namenode.secondary.https-port>>> | <50470> | |
*-------------------------+-------------------------+------------------------+ *-------------------------+-------------------------+------------------------+
| <<<dfs.namenode.secondary.keytab.file>>> | | | | <<<dfs.secondary.namenode.keytab.file>>> | | |
| | </etc/security/keytab/sn.service.keytab> | | | | </etc/security/keytab/sn.service.keytab> | |
| | | Kerberos keytab file for the NameNode. | | | | Kerberos keytab file for the Secondary NameNode. |
*-------------------------+-------------------------+------------------------+ *-------------------------+-------------------------+------------------------+
| <<<dfs.namenode.secondary.kerberos.principal>>> | sn/_HOST@REALM.TLD | | | <<<dfs.secondary.namenode.kerberos.principal>>> | sn/_HOST@REALM.TLD | |
| | | Kerberos principal name for the Secondary NameNode. | | | | Kerberos principal name for the Secondary NameNode. |
*-------------------------+-------------------------+------------------------+ *-------------------------+-------------------------+------------------------+
| <<<dfs.namenode.secondary.kerberos.https.principal>>> | | | | <<<dfs.secondary.namenode.kerberos.internal.spnego.principal>>> | | |
| | host/_HOST@REALM.TLD | | | | HTTP/_HOST@REALM.TLD | |
| | | HTTPS Kerberos principal name for the Secondary NameNode. | | | | HTTP Kerberos principal name for the Secondary NameNode. |
*-------------------------+-------------------------+------------------------+ *-------------------------+-------------------------+------------------------+
Configuration for <<<conf/hdfs-site.xml>>> Configuration for <<<conf/hdfs-site.xml>>>
@ -454,10 +454,6 @@ Configuration for <<<conf/hdfs-site.xml>>>
| <<<dfs.datanode.kerberos.principal>>> | dn/_HOST@REALM.TLD | | | <<<dfs.datanode.kerberos.principal>>> | dn/_HOST@REALM.TLD | |
| | | Kerberos principal name for the DataNode. | | | | Kerberos principal name for the DataNode. |
*-------------------------+-------------------------+------------------------+ *-------------------------+-------------------------+------------------------+
| <<<dfs.datanode.kerberos.https.principal>>> | | |
| | host/_HOST@REALM.TLD | |
| | | HTTPS Kerberos principal name for the DataNode. |
*-------------------------+-------------------------+------------------------+
| <<<dfs.encrypt.data.transfer>>> | <false> | | | <<<dfs.encrypt.data.transfer>>> | <false> | |
| | | set to <<<true>>> when using data encryption | | | | set to <<<true>>> when using data encryption |
*-------------------------+-------------------------+------------------------+ *-------------------------+-------------------------+------------------------+