Details
-
Bug
-
Status: Resolved
-
Blocker
-
Resolution: Not A Bug
-
Impala 2.0
-
None
-
None
Description
Impala now always appends @DOMAIN to usernames in secure environments. I believe this is what we want if LDAP is enabled, but if only Kerberos is in use we should not do this.
This is a behavior change from v1.4 and is has broken other components, namely CM. For v2.0 we should revert back to the old behavior.
I believe this change happened in one of these two commits:
commit c2fb8f6f3a71b8846ba7ffd5b4ce0ce10167757b
Author: Mike Yoder <myoder@cloudera.com>
Date: Fri Jul 18 15:16:07 2014 -0700
Support for simultaneous LDAP and Kerberos authentication.
-------------------
commit fc676feaad5b8e4a72d86a8cdeda8423975b2304
Author: Mike Yoder <myoder@cloudera.com>
Date: Wed Aug 20 15:14:22 2014 -0700
Several minor authentication improvements