Bug Fixes
Resolved Issues
This section consists of the issues fixed in this release.
Ambari
JIRA ID | Apache ID | Description |
ODP-5431 | Added JDK8 GC flags to Kafka MirrorMaker2 | |
ODP-5401 | Fixed service advisory check for oozie.base.url property in oozie-site | |
ODP-5413 | Fixed oozie-setup.sh using -secure flag when HTTPS is disabled | |
ODP-5216 | Fixed incorrect oozie.base.url value in service advisory | |
ODP-5355 | Fixed broken build due to Ambari Infra Solr version mismatch | |
ODP-5356 | Fixed router SSL port conflict with NiFi | |
ODP-5294 | Added htrace-core4, common-logging, and configuration JARs for Hadoop 3.2.x | |
ODP-5298 | Replaced f-strings with .format() for Python 2 compatibility | |
ODP-5295 | Fixed creation of JCEKS parent folder if missing | |
ODP-5276 | AMBARI-26323 | Fixed Ambari component installation failure after Commons-Collections upgrade |
OSV-8178 | Reverted partial Jackson bump (2.16.1) due to CVE issue | |
ODP-5160 | Fixed compile issues caused by filename conflicts | |
ODP-4905 | Fixed Kafka broker restart failure due to missing MirrorMaker2 config | |
ODP-4781 | Fixed JCEKS warnings in non-SSL Kafka/CC/MM2 environments (3.0 & 3.3 stack) | |
ODP-4500 / ODP-4504 | Fixed exposed passwords & restart issues for Kafka Connect (3.0 stack) | |
ODP-4495 | Masked exposed passwords for Kafka and Cruise Control (3.0 stack) | |
ODP-4500 | Fixed exposed passwords for Kafka MirrorMaker (3.0 stack) | |
ODP-4413 | Added Kafka MirrorMaker2 multi-topology support for 3.0 stack | |
ODP-4725 | Handled hive.perflogger.log.level default value | |
ODP-4848 | Fixed Oozie variable references in Knox params (3.0 stack) | |
ODP-4792 | Improved MirrorMaker service labels for Kafka2 (3.0 stack) | |
ODP-4768 | Removed duplicate SSL keystore password to prevent client failure (3.0 stack) | |
ODP-4734 | Fixed Knox installation issue with standalone services (3.0 stack) | |
ODP-4642 | Fixed Hive service check failure in 3.3.6.2-1 cluster | |
ODP-4631 | Updated default Zeppelin URL from /next to / (0.12.0, 3.0 stack) | |
ODP-4947 | Fixed Express Upgrade config upgrade step failure | |
ODP-4852 | Fixed XML template escape character handling | |
ODP-4802 | Fixed Hive service check failures in 3.3.6.2-1 cluster | |
ODP-4764 | Fixed Oozie URL protocol in Knox topology | |
ODP-4695 | Fixed multiple jersey-json versions found in classpath | |
ODP-4680 | Added a handler to apply SSL configs only when SSL is enabled | |
ODP-4681 | Fixed ZooKeeper UI quicklinks in HTTP-only mode | |
ODP-4656 | Fixed Step 2 blocking issue during manual KDC setup | |
ODP-4614 | AMBARI-25084 | Fixed identity deletion when removing service in reverse order |
ODP-4615 | AMBARI-26517 | Prevented password printing during DB connection check |
ODP-4483 | Reverted Hive and Tez Hook configurations for Pulse | |
ODP-4279 | Fixed exposed credentials and metastore DB password for Druid | |
ODP-4502 | Added missing default configurations for stack 3.3 | |
ODP-4529 | Changed admin.serverPort to 8070 to avoid conflict with Ambari UI | |
ODP-4283 | Fixed exposed Hive SSL credentials | |
ODP-4431 | Added Hive SSL properties to hive-site.xml | |
ODP-4406 | Set yarn.resourcemanager.ha.enabled type to boolean | |
ODP-4349 | AMBARI-26240 | Fixed the alter dispatcher issue |
ODP-4349 | AMBARI-26103 | Removed Google Analytics (ASF Privacy compliance) |
ODP-4349 | AMBARI-26255 | Fixed the capacity-scheduler view addition issue |
ODP-4349 | AMBARI-26234 | Fixed ClusterNotFoundException in Confirm Hosts stage |
ODP-4349 | AMBARI-26115 | Fixed incorrect $PYTHONPATH resolution |
ODP-4349 | AMBARI-25897 | Fixed default SPNEGO config in hive-site.xml |
ODP-4349 | AMBARI-25970 | Fixed Ambari Infra-Solr config for version 2.7.8.0 |
ODP-4349 | AMBARI-26276 | Fixed the HDFS web service check issue |
ODP-4349 | AMBARI-25968 | Fixed Ambari Admin compile failure |
ODP-4349 | AMBARI-26120 | Excluded disabled hosts during cluster install (Step 6) |
ODP-4349 | AMBARI-25928 | Fixed WebSocket connection leak in Ambari Web UI |
ODP-4349 | AMBARI-26198 | Fixed the time range selector auto-hide issue |
ODP-4349 | AMBARI-26194 | Fixed Ambari host page action button functionality |
ODP-4349 | AMBARI-26205 | Fixed dropdown menu layout overflow |
ODP-4349 | AMBARI-26251 | Fixed tooltip display issue |
ODP-4349 | AMBARI-26236 | Strengthened DB password character type requirements |
ODP-4154 | Fixed Knox 401 Unauthorized error when accessing Solr | |
ODP-4159 | Fixed restart recommendations for Cruise Control, MirrorMaker, and Connect (3.0 & 3.3) | |
ODP-4160 | Fixed Knox Ranger audit directory creation failure | |
ODP-4158 | Fixed Impala user Solr audit Kerberos authorization issue | |
ODP-4088 / ODP-3277 | Removed conflicting widgets/layouts from credentials.json | |
ODP-4088 | Reverted HUE/LIVY3 order changes for 3.0 & 3.3 stack | |
ODP-4088 / ODP-4112 | Fixed Druid service check in SSL mode | |
ODP-4079 | Added SSL handling for Druid service check | |
ODP-4003 | Allowed empty values for zeppelin.note.file.exclude.fields | |
ODP-3926 | Updated Zeppelin version to 0.11.2 | |
ODP-3909 | Fixed missing translation for Ranger TagSync component | |
ODP-3881 | Tuned HBase default configs for 3.0 & 3.3 stacks | |
ODP-3866 | Fixed Druid overlord start issue | |
ODP-3862 | Fixed Ambari Metrics compile issue due to HBase upgrade | |
ODP-3747 | Removed conflicting widgets/layouts from credentials.json | |
ODP-3794 | Updated Hadoop default configurations | |
ODP-3802 | Updated Hive default configurations | |
ODP-3810 | Updated Druid default configurations | |
ODP-3801 | Updated HBase 2.6.2 default configurations | |
ODP-1134 | Fixed hardcoded values in Hive Ranger plugin config | |
ODP-4994 | Aligned ODP version, fixed checkstyle and license issues, and corrected URLs/submodule versions | |
ODP-5314 | Fixed the Knox installation failure when Oozie is not installed | |
ODP-3922 | Fixed the Altering Oozie version to 5.2.1 |
Hadoop
JIRA ID | Apache ID | Description |
OSV-8459 | HADOOP-18136 | Verified FileUtils.unTar() handling of missing .tar files |
HADOOP-18085 | Upgraded S3 SDK causing AccessPoint ARN endpoint mistranslation |
Druid
JIRA ID | Apache ID | Description |
ODP-5300 | Partially rolled back jackson.version to 2.12.7 | |
ODP-5331 | Matched Jackson version with Hive | |
ODP-5048 ODP-2718/ODP-2759 | Refactored shebangs for python scripts to ambari-python-wrap |
Flink
JIRA ID | Apache ID | Description |
ODP-5103 | Updated HiveMetaStoreClient to use setEngine() instead of constructor | |
ODP-4280 | Enhanced Flink HS Web UI with obfuscated SSL password support | |
ODP-5046 | Fixed Checkstyle EmptyLineSeparator errors in RemoteCalcCallFinder.java |
HBase
JIRA ID | Apache ID | Description |
ODP-5386 | Fixed compilation issue | |
ODP-5026 | Added javax/xml related class pattern to ensure-jars-have-correct-contents.sh |
Hive
JIRA ID | Apache ID | Description |
HIVE-24484 | Upgraded Hadoop to 3.3.1 and Tez to 0.10.2 | |
HIVE-28856 | Removed jetty-runner dependency | |
HIVE-28360 | Upgraded jersey to 1.19.4 | |
ODP-4465 | Fixed NumberFormatException for MSCK class | |
ODP-4483 | Reverted Pulse Hive hook reporter enablement | |
HIVE-27105 | Fixed parquet table query failure with zstd encryption | |
HIVE-26205 HIVE-27105 | Corrected slf4j-api dependency scope in kafka-handler |
Impala
JIRA ID | Apache ID | Description |
ODP-4409 | Fixed banned dependency exclusions | |
ODP-4409 | Reverted Maven enforcer plugin enforcement |
Kafka
JIRA ID | Apache ID | Description |
ODP-4434 | Fixed Kafka compatibility with Scala 2.13 and Jackson 2.16 | |
ODP-5383 | Pointed Kafka Connect dependencies to JDK 8 compatible versions |
Kafka3
JIRA ID | Apache ID | Description |
ODP-5383 | Updated Kafka Connect and Cruise Control3 jars for JDK 8 compatibility |
Knox
JIRA ID | Apache ID | Description |
OSV-4673 | Upgraded com.google.guava_guava to 32.0.1-jre to resolve CVE | |
ODP-4999 | Ensured type=realtime/offline parameters are forwarded correctly | |
ODP-5027 | Fixed unapproved license issue for Pinot XML files | |
ODP-1866 | Handled /images, login.jsp, and other updated Ranger service definitions | |
ODP-4362 | KNOX-2896 | Reverted default API service view to v2 |
KNOX-2940 | Fixed the knoxcli create-alias/create-aliases command to support values starting with a dash | |
KNOX-2996 | Added proxy for HDFS UI network topology | |
KNOX-3012 | Fixed DataNode links on Ozone SCM UI | |
KNOX-2958 | Fixed API samples for certain services | |
KNOX-2915 | Reloaded descriptors during monitor startup and before topology redeployment | |
KNOX-3030 | Made TopologyUtils.parse thread-safe | |
KNOX-3021 | Applied HTTP configuration to non-SSL Jetty connectors | |
KNOX-3024 | Fixed Java environment detection issues | |
ODP-3787 | Fixed HDFS redirection to proxy over Knox | |
ODP-2204 | Fixed Impala-Knox JDBC connection issue | |
ODP-5027 | Fixed Knox 2.0.0 compilation issues with Hadoop 3.2.3.3.2.3.4-2 |
Kudu
JIRA ID | Apache ID | Description |
KUDU-3491 | Destructed master before creating new one | |
KUDU-3661 | Fixed Ranger policy enforcement in Kudu | |
ODP-4514 | Fixed MiniDumpExceptionHandler assert during Kudu master startup | |
ODP-4131 | Added hadoop-hdfs-client jar to ranger's classpath |
Oozie
JIRA ID | Apache ID | Description |
ODP-5284 | Added ecj jar to distro assembly for password fix | |
ODP-5394 | Fixed POM exclusion for calcite-core in sqoop module | |
ODP-5169 | Added SSL support for multiple SAN entries |
Ozone
JIRA ID | Apache ID | Description |
ODP-5369 | Downgraded grpc version to 1.60.0 to fix centos7 build failure | |
ODP-3773 | Reverted authFilterConfigurationPrefix method per ODP-2997 |
Pinot
JIRA ID | Apache ID | Description |
ODP-5336 | Reverted helix version upgrade | |
ODP-4277 | Avoided Kafka2 & 3 dependency convergence errors | |
ODP-4911 | Changed default pinot.server.grpc.port to 8093 | |
ODP-4814 | Fixed null handling in Zookeeper Browser page |
Ranger
JIRA ID | Apache ID | Description |
ODP-5332 | Added ASF Licence content in elevate.xml | |
ODP-5332 | Added Solr elevate.xml and elevate.xml.j2 files | |
ODP-5364 | Downgraded and matched guava version for compatibility | |
ODP-5344 | Updated ranger 2.5.0 plugins to include htrace jar | |
ODP-5287 | RANGER-3482 | Fixed Kafka plugin initialization failure |
ODP-5263-2 | RANGER-3400 | Included htrace-core.jar in admin module |
ODP-5288 | Fixed JAX-RS API incompatibility with Jersey | |
ODP-5263 | RANGER-3400 | Included htrace-core.jar in tagsync, usersync and kms modules |
Registry
JIRA ID | Apache ID | Description |
ODP-4296 | Fixed DB password exposure via REGISTRY_DB_PASSWORD | |
ODP-4830 | Allowed project build without mavenUrl or snapMavenUrl |
Spark
JIRA ID | Apache ID | Description |
ODP-5322 | Reverted guava version upgrade |
Spark3
JIRA ID | Apache ID | Description |
ODP-5105 | ODP-5004 | Reverted PartitionedFileUtil API simplifications |
ODP-5029 | Handled Iceberg version matching with JDK8 | |
Reverted streaming checkpoint file manager addition | ||
Reverted hadoop-cloud structure reorganization | ||
ODP-4858 | Fixed Hudi/delta SQL query issue caused by antlr version | |
ODP-780 | Upgraded libthrift from 0.12.0 to 0.14.1 for Hive 3.1.4 | |
ODP-1603 | Fixed initialization issue in StringEscapeUtils | |
ODP-3300 | Excluded logback jars from Spark builds | |
ODP-1916 | Partially reverted SPARK-39653 for WritableColumnVector handling | |
SPARK-47932 | Removed usage of legacy commons-lang |
Tez
JIRA ID | Apache ID | Description |
ODP-5340 | Included missing Jackson Jars in Tez package | |
ODP-4483 | Reverted Pulse Tez hook reporter enablement |
Trino
JIRA ID | Apache ID | Description |
Removed Kudu connector | ||
ODP-5258 | Excluded netty-tcnative-boringssl-static from pinot-core dependency | |
ODP-5224 | Upgraded netty.version to 4.1.127.Final | |
Reverted gcs-connector updates and Azure stream buffering changes |
Zeppelin
JIRA ID | Apache ID | Description |
ODP-5033 | Added JDK8 compatible changes for external libs | |
Reverted Jetty updates to use Jakarta |
Ambari-Mpack
Airflow Mpack (2.8.3)
ODP JIRA | Description |
ODP-5552 | Fixed the airflow service check when SSis L is enabled. |
Httpfs Mpack (2.7.1)
ODP JIRA | Description |
ODP-5251 | Added service check condition to run after HTTPFS start |
ODP-4075 | Updated role command order |
Hue Mpack (4.11.0)
ODP JIRA | Description |
ODP-5540 | Fixed the variable name to prevent errors in the Hue log with Hive |
ODP-5429 | Added Impala and Hive to the notebook. |
ODP-5393 | Fixed the variable case issue, causing incorrect interpretation (#310) |
ODP-5286 | Fixed install failure with rm_id (#300) |
ODP-4865 | Fixed Hue restart when no Zookeeper clients are detected |
ODP-5309 | Fixed super() compatibility with Python 2 & 3 |
ODP-5286 | Fixed Yarn HA check for Python 2 |
ODP-5220 | Fixed Impala config issue when Kerberos is disabled |
ODP-5213 | Added KRB5_KTNAME to the Hue environment to fix the Knox issue |
ODP-4148 | Hid the SSL password in Ambari UI |
ODP-4075 | Updated role command order |
ODP-4057 | |
ODP-4062 | |
ODP-3947 | Fixed HA HDFS port detection |
ODP-3924 | Disabled debug logging for cleaner logs (#183) |
Impala Mpack (4.4.0)
ODP JIRA | Description |
— | Backported Impala mpack changes from 4.4.1 to 4.4.0 |
ODP-4099 | Fixed Impala library broken symlinks |
ODP-4246 | Added kudu_master_hosts property for Kudu operations |
ODP-4273 | Fixed Ranger HDFS audit directory permissions |
ODP-4087 | Updated audit spool paths from Hive to Impala |
ODP-4087 | Fixed principal mapping for multi-host installs |
ODP-4087 | Skipped Ranger setup for client-only installs |
ODP-4087 | Added missing ambari-python-wrap and license headers |
ODP-4087 | Fixed repository name parsing |
ODP-4087 | Fixed Ranger setup initialization issue |
ODP-4087 | Added Hive client enablement & Ranger integration |
ODP-4075 | Updated role command order |
JupyterHub Mpack (5.2.1)
JIRA ID | Description |
ODP-4075 | Updated role command order |
Kafka Mpack (3.7.1)
JIRA ID | Description |
ODP-4162 | Fixed restart recommendations for Cruise Control, MirrorMaker, and Connect |
ODP-3825 | Changed Kafka controller log level to INFO |
ODP-4252 | Updated broker protocol in service check |
Kudu Mpack (1.17.0)
JIRA ID | Description |
ODP-4305 | Added missing core-site.xml and hdfs-site.xml to the Ranger plugin |
ODP-4270 | Added extra checks for Kudu status queries |
ODP-4075 | Updated role command order |
ODP-4131 | Added Ranger JARs to classpath |
ODP-3726 | Fixed dependency naming issue |
NiFi / NiFi-Registry Mpack (1.27.0)
JIRA ID | Description |
ODP-4121 | Fixed HDFS and Solr audits for NiFi and NiFi Registry |
Ozone Mpack (1.4.1)
JIRA ID | Description |
ODP-4199 | Fixed the dfs_type not set error when Ozone Ranger HDFS audits is enabled |
Schema Registry Mpack (1.0.0)
JIRA ID | Description |
ODP-4140 | Fixed SCRIPT_DIR, STACKS_DIR, and PARENT_FILE path in service_advisor.py |
Spark3 Mpack (3.5.5)
JIRA ID | Description |
ODP-4075 | Updated role command order |
ODP-4658 | Fixed Spark3 Ambari 3.0.0 server startup failure due to missing theme.json declaration |
Trino Mpack (472)
JIRA ID | Description |
ODP-5439 | Retrieved the Java truststore path automatically to resolve SSL configuration issues. |
ODP-5438 | Queried systemd to fix Trino’s status on Ambari. |
ODP-5409 | Fixed Trino on Ubuntu, CentOS 7, and Python 2. |
ODP-5385 | Improved Trino service advisor coordinator host detection. |
ODP-5359 | Configured Trino’s HTTP and HTTPS ports as 9097 and 9098 to avoid port conflicts. |
ODP-5354 | Fixed a Jinja template syntax error in the Trino worker. |
ODP-5154 | Fixed the coordinator-_also-_worker option. |
Backported Ranger Bug Fixes from 2.6.0 to ODP v2.5.0.3.2.3.4-2
Apache ID | Description | Description |
RANGER-4919 | Fixed Maven build failures after Knox Gateway upgrade to version 2.0.0. | 2.6.0 |
RANGER-4915 | Strengthened default SSL ciphers for the user sync service. | 2.6.0 |
RANGER-4833 | Replaced Bootbox.js with Bootprompt.js for UI dialogs. | 2.6.0 |
RANGER-5002 | Fixed Oracle installation failure during vx_principal schema creation. | 2.6.0 |
RANGER-4949 | Fixed security zone creation failure in Oracle DB when any role is selected. | 2.6.0 |
RANGER-4977 | Fixed HBase scan results returning denied columns. | 2.6.0 |
RANGER-5169 | Fixed error during Master Key migration from older format to external key store. | 2.6.0 |
RANGER-5124 | Fixed mismatch between policy/tag active time and last update/policy download timestamps. | 2.6.0 |
RANGER-4969 | Upgraded Commons IO library to version 2.17.0 to fix related issues. | 2.6.0 |
