You are viewing a plain text version of this content. The canonical link for it is here.
Posted to common-dev@hadoop.apache.org by "Chris Nauroth (JIRA)" <ji...@apache.org> on 2013/08/20 19:32:52 UTC

[jira] [Created] (HADOOP-9888) KerberosName static initialization gets default realm, which is unneeded in non-secure deployment.

Chris Nauroth created HADOOP-9888:
-------------------------------------

             Summary: KerberosName static initialization gets default realm, which is unneeded in non-secure deployment.
                 Key: HADOOP-9888
                 URL: https://issues.apache.org/jira/browse/HADOOP-9888
             Project: Hadoop Common
          Issue Type: Bug
          Components: security
    Affects Versions: 3.0.0, 2.1.1-beta
            Reporter: Chris Nauroth


{{KerberosName}} has a static initialization block that looks up the default realm.  Running with Oracle JDK7, this code path triggers a DNS query.  In some environments, we've seen this DNS query block and time out after 30 seconds.  This is part of static initialization, and the class is referenced from {{UserGroupInformation#initialize}}, so every daemon and every shell command experiences this delay.  This occurs even for non-secure deployments, which don't need the default realm.

--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators
For more information on JIRA, see: http://www.atlassian.com/software/jira