You are viewing a plain text version of this content. The canonical link for it is here.
Posted to yarn-dev@hadoop.apache.org by "Balázs Szabó (JIRA)" <ji...@apache.org> on 2019/06/11 11:12:00 UTC

[jira] [Created] (YARN-9617) RM UI enables viewing pages using Timeline Reader for a user who can not access the YARN config endpoint

Balázs Szabó created YARN-9617:
----------------------------------

             Summary: RM UI enables viewing pages using Timeline Reader for a user who can not access the YARN config endpoint
                 Key: YARN-9617
                 URL: https://issues.apache.org/jira/browse/YARN-9617
             Project: Hadoop YARN
          Issue Type: Bug
          Components: yarn-ui-v2
    Affects Versions: 3.1.1
            Reporter: Balázs Szabó
         Attachments: 1.png, 2.png

If a user who can not access the /conf endpoint she/he will be unable to query the address of the Timeline Service Reader (yarn.timeline-service.reader.webapp.address). In this case, the user receives a "403 Unauthenticated users are not authorized to access this page" response, when trying to view pages requesting data from the Timeline Reader (i.e. Flow Activity tab). In this case the UI is falling back to the default address (localhost:8188), which eventually yields the 401 response (see attached screenshots).

 

!1.png!



--
This message was sent by Atlassian JIRA
(v7.6.3#76005)

---------------------------------------------------------------------
To unsubscribe, e-mail: yarn-dev-unsubscribe@hadoop.apache.org
For additional commands, e-mail: yarn-dev-help@hadoop.apache.org