Allows client library configs for external kerberos and ldap, user is expected to provide krb5-* configs for the external AD or external MIT instance.
AD example:
krb5_kdc_host: ad-domain.mycompany.com
krb5_realm: MYREALM.COM
krb5_kdc_admin_user: "admin-user@{{ krb5_realm }}"
krb5_kdc_admin_password:
Allows client library configs for external kerberos and ldap, user is expected to provide krb5-* configs for the external AD or external MIT instance. AD example: krb5_kdc_host: ad-domain.mycompany.com krb5_realm: MYREALM.COM krb5_kdc_admin_user: "admin-user@{{ krb5_realm }}" krb5_kdc_admin_password:
krb5_kdc_type: Active Directory krb5_kdc_active_directory_prefix: "pvc-" krb5_kdc_active_directory_suffix: "OU=some-ou,DC=company,DC=com" krb5_enc_types: aes256-cts rc4-hmac krb5_kdc_active_directory_set_encryption_types: true
MIT Example: krb5_kdc_host: mit-kdc.mycompany.com krb5_realm: MYREALM.COM krb5_kdc_admin_user: "cloudera-scm/admin@{{ krb5_realm }}" krb5_kdc_admin_password: "mypass" krb5_kdc_type: MIT KDC krb5_enc_types: "aes256-cts aes128-cts"
Signed-off-by: Chuck Levesque clevesque@cloudera.com