Browse Source

AMBARI-11179. Kerberos: Oozie auth rules do not look correct (rlevas)

Robert Levas 10 years ago
parent
commit
2dd80b9037

+ 0 - 5
ambari-server/src/main/resources/common-services/OOZIE/4.0.0.2.0/configuration/oozie-site.xml

@@ -142,11 +142,6 @@
   <property>
     <name>oozie.authentication.kerberos.name.rules</name>
     <value>
-      RULE:[2:$1@$0]([jt]t@.*TODO-KERBEROS-DOMAIN)s/.*/TODO-MAPREDUSER/
-      RULE:[2:$1@$0]([nd]n@.*TODO-KERBEROS-DOMAIN)s/.*/TODO-HDFSUSER/
-      RULE:[2:$1@$0](hm@.*TODO-KERBEROS-DOMAIN)s/.*/TODO-HBASE-USER/
-      RULE:[2:$1@$0](rs@.*TODO-KERBEROS-DOMAIN)s/.*/TODO-HBASE-USER/
-      DEFAULT
     </value>
     <description>The mapping from kerberos principal names to local OS user names.</description>
   </property>

+ 1 - 6
ambari-server/src/main/resources/common-services/OOZIE/5.0.0.2.3/configuration/oozie-site.xml

@@ -21,11 +21,6 @@
   <property>
     <name>oozie.authentication.kerberos.name.rules</name>
     <value>
-      RULE:[2:$1@$0]([jt]t@.*TODO-KERBEROS-DOMAIN)s/.*/TODO-MAPREDUSER/
-      RULE:[2:$1@$0]([nd]n@.*TODO-KERBEROS-DOMAIN)s/.*/TODO-HDFSUSER/
-      RULE:[2:$1@$0](hm@.*TODO-KERBEROS-DOMAIN)s/.*/TODO-HBASE-USER/
-      RULE:[2:$1@$0](rs@.*TODO-KERBEROS-DOMAIN)s/.*/TODO-HBASE-USER/
-      DEFAULT
     </value>
     <description>The mapping from kerberos principal names to local OS user names.</description>
   </property>
@@ -164,4 +159,4 @@
     </description>
   </property>
 
-</configuration>
+</configuration>