Uploaded image for project: 'Hadoop YARN'
  1. Hadoop YARN
  2. YARN-3855

If acl is enabled and http.authentication.type is simple, user cannot view the app page in default setup

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Patch Available
    • Major
    • Resolution: Unresolved
    • None
    • None
    • security

    Description

      If all ACLs (admin acl, queue-admin-acls etc.) are setup properly and "http.authentication.type" is 'simple' in secure mode , user cannot view the application web page in default setup because the incoming user is always considered as "dr.who" . User also cannot pass "user.name" to indicate the incoming user name, because AuthenticationFilterInitializer is not enabled by default. This is inconvenient from user's perspective.

      Attachments

        1. YARN-3855.1.patch
          6 kB
          Jian He
        2. YARN-3855.2.patch
          9 kB
          Jian He

        Activity

          People

            jianhe Jian He
            jianhe Jian He
            Votes:
            0 Vote for this issue
            Watchers:
            8 Start watching this issue

            Dates

              Created:
              Updated: