You are viewing a plain text version of this content. The canonical link for it is here.
Posted to dev@knox.apache.org by "Kevin Minder (JIRA)" <ji...@apache.org> on 2013/04/03 23:01:16 UTC

[jira] [Created] (KNOX-27) Access Kerberos secured Hadoop cluster via gateway using basic auth credentials

Kevin Minder created KNOX-27:
--------------------------------

             Summary: Access Kerberos secured Hadoop cluster via gateway using basic auth credentials
                 Key: KNOX-27
                 URL: https://issues.apache.org/jira/browse/KNOX-27
             Project: Apache Knox
          Issue Type: New Feature
          Components: Server
            Reporter: Kevin Minder


>From BUG-4306
The basic interactions flow might look like this.
1. Client requests HDFS resource via gateway
2. Gateway challenges with basic auth
3. Gateway authenticates with KDC and receives token
4. Gateway forwards original request to service
5. Service challenges with SPNEGO
6. Gateway provides token received from KDC
7. Service provides response including hadoop.auth cookie.  This prevents subsequent KDC and SPNEGO interactions.

--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators
For more information on JIRA, see: http://www.atlassian.com/software/jira