Back to Flink

Security Auth Kerberos Section

docs/layouts/shortcodes/generated/security_auth_kerberos_section.html

0.4-rc11.2 KB
Original Source
KeyDefaultTypeDescription
security.kerberos.access.hadoopFileSystems

| (none) | List<String> | A semicolon-separated list of Kerberos-secured Hadoop filesystems Flink is going to access. For example, security.kerberos.access.hadoopFileSystems=hdfs://namenode2:9002;hdfs://namenode3:9003. The JobManager needs to have access to these filesystems to retrieve the security tokens. | |

security.kerberos.login.contexts

| (none) | String | A comma-separated list of login contexts to provide the Kerberos credentials to (for example, Client,KafkaClient to use the credentials for ZooKeeper authentication and for Kafka authentication) | |

security.kerberos.login.keytab

| (none) | String | Absolute path to a Kerberos keytab file that contains the user credentials. | |

security.kerberos.login.principal

| (none) | String | Kerberos principal name associated with the keytab. | |

security.kerberos.login.use-ticket-cache

| true | Boolean | Indicates whether to read from your Kerberos ticket cache. | |

security.kerberos.relogin.period

| 1 min | Duration | The time period when keytab login happens automatically in order to always have a valid TGT. |