Acceldata
Pulse

accelo config kerberos

Synopsis

This command configures and generates files required for Acceldata Kerberos setup.

Note

Before executing, verify if this command is compatible to the targeted Pulse version.

accelo config kerberos [flags]

Note

If you are using Pulse version >= 3.3.1, then add allow_weak_crypto config to krb5.conf file as shown in the example file code block below. This is mandatory for sparkstats and ad-connectors to read from HDFS and RM interface respectively.

[libdefaults]

allow_weak_crypto = true

default_realm = ADSRE.COM

dns_lookup_kdc = false

dns_lookup_realm = false

ticket_lifetime = 86400

renew_lifetime = 604800

forwardable = true

default_tgs_enctypes = rc4-hmac

default_tkt_enctypes = rc4-hmac

permitted_enctypes = rc4-hmac

udp_preference_limit = 1

kdc_timeout = 3000

[realms]

ADSRE.COM = {

kdc = cdpssl01.acceldata.dvl

admin_server = cdpssl01.acceldata.dvl

}

[domain_realm]

Options

  • -h: help help for kerberos
  • -u: Updates the Kerberos in passwd and group files of Pulse containers.

SEE ALSO

  • accelo config - Configure the Acceldata stack services and components