hortonworks / structor

Vagrant files creating multi-node virtual Hadoop clusters with or without security.
67 stars 52 forks source link

Secure hdfs setup not idempotent due to incorrect keystore path #21

Open cartershanklin opened 9 years ago

cartershanklin commented 9 years ago

[root@nn ssl-ca]# keytool -list -alias horton-ca -keystore /usr/java/default/jre/lib/security/cacerts -storepass changeit keytool error: java.lang.Exception: Alias does not exist [root@nn ssl-ca]# keytool -importcert -noprompt -alias horton-ca -keystore /usr/lib/jvm/java/jre/lib/security/cacerts -storepass changeit keytool error: java.lang.Exception: Certificate not imported, alias already exists

Correct path is /etc/pki/java/cacerts

Note that

[root@nn ssl-ca]# ls -l /usr/lib/jvm/java/jre/lib/security/ total 40 lrwxrwxrwx 1 root root 41 Sep 10 02:28 cacerts -> ../../../../../../../etc/pki/java/cacerts