官术网_书友最值得收藏!

User authentication

Hadoop can use the native user-authentication methods of the server. For example, in Linux-based machines, users can be authenticated based on the IDs defined in the system's /etc/passwd files. In other words, Hadoop inherits the user authentication set up on the server side.

User authentication via Kerberos, a cross-platform authentication protocol, is also commonly used in Hadoop clusters. Kerberos works based on a concept of tickets that grant privileges to users on a temporary as-needed basis. Tickets can be invalidated using Kerberos commands, thus restricting the users' rights to access resources on the cluster as needed.

Note that even if the user is permitted to access data (user authentication), he or she can still be limited in what data can be accessed due to another feature known as authorization. The term implies that even if the user can authenticate and log in to the system, the user may be restricted to only the data the user is authorized to access. This level of authorization is generally performed using native HDFS commands to change directory and file ownerships to the named users.

主站蜘蛛池模板: 托克托县| 巢湖市| 罗江县| 定结县| 尼勒克县| 馆陶县| 酉阳| 鄢陵县| 仁布县| 阿拉善盟| 丰城市| 昔阳县| 来安县| 米脂县| 崇州市| 鹿邑县| 霞浦县| 台东市| 遂川县| 塔河县| 平陆县| 三台县| 门源| 镇雄县| 宝坻区| 延庆县| 扬中市| 麻江县| 公主岭市| 富民县| 阿拉善右旗| 四平市| 进贤县| 岳阳市| 图木舒克市| 云龙县| 雅江县| 凤山县| 甘洛县| 会昌县| 于田县|