Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Allow specifying service principal for Kerberos authenticator #136

Conversation

Yaliang
Copy link
Collaborator

@Yaliang Yaliang commented Feb 9, 2018

The built-in host-based service name type for Kerberos authenticator cannot fit our use case. By allowing pass a specific service principle and use the user based name type, the authenticator can be authenticated by Kerberos master without specifying the host running Presto service.
This should be a common scenario that the service is running on a managed cloud computing environment.

@Yaliang Yaliang force-pushed the yaliangw/twitter/twitter-kerberos-adapt branch from 4770623 to 5ff43e4 Compare February 10, 2018 00:52
@Yaliang Yaliang force-pushed the yaliangw/twitter/twitter-kerberos-adapt branch from 5ff43e4 to 366b132 Compare February 10, 2018 02:26
@Yaliang Yaliang changed the title Allow giving a complete service principle Allow specifying service principal for Kerberos authenticator Feb 10, 2018
Copy link

@luohao luohao left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM.

@Yaliang Yaliang merged commit 37bdeb7 into twitter-forks:twitter-master Feb 13, 2018
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants