cdh5.12.2 开启kerberos认证
一:kdc 服务的安装与配置 二:集群所有节点安装Kerberos客户端(包括CM) 三:CDH集群启用Kerberos 一: kdc 服务的安装与配置 1.1 安装kdc服务 # yum install krb5-server krb5-libs krb5-auth-dialog krb5-workstation -y 1.2 配置kdc 服务 vim /etc/krb5.conf --- includedir /etc/krb5.conf.d/ [logging] default = FILE:/var/log/krb5libs.log kdc = FILE:/var/log/krb5kdc.log admin_server = FILE:/var/log/kadmind.log [libdefaults] dns_lookup_kdc = false dns_lookup_realm = false ticket_lifetime = 24h renew_lifetime = 7d forwardable = true rdns = false default_realm = GEMS.COM default_tgs_enctypes = rc4-hmac default_tkt_enctypes = rc4-hmac permitted_enctypes = rc4