|
@@ -22,7 +22,7 @@ OZONE-SITE.XML_hdds.scm.block.client.address=scm
|
|
|
OZONE-SITE.XML_ozone.metadata.dirs=/data/metadata
|
|
|
OZONE-SITE.XML_ozone.handler.type=distributed
|
|
|
OZONE-SITE.XML_hdds.scm.client.address=scm
|
|
|
-OZONE-SITE.XML_hdds.datanode.plugins=org.apache.hadoop.ozone.web.OzoneHddsDatanodeService
|
|
|
+OZONE-SITE.XML_ozone.replication=1
|
|
|
OZONE-SITE.XML_hdds.scm.kerberos.principal=scm/scm@EXAMPLE.COM
|
|
|
OZONE-SITE.XML_hdds.scm.kerberos.keytab.file=/etc/security/keytabs/scm.keytab
|
|
|
OZONE-SITE.XML_ozone.om.kerberos.principal=om/om@EXAMPLE.COM
|
|
@@ -32,21 +32,12 @@ OZONE-SITE.XML_hdds.scm.web.authentication.kerberos.principal=HTTP/scm@EXAMPLE.C
|
|
|
OZONE-SITE.XML_hdds.scm.web.authentication.kerberos.keytab=/etc/security/keytabs/HTTP.keytab
|
|
|
OZONE-SITE.XML_ozone.om.web.authentication.kerberos.principal=HTTP/om@EXAMPLE.COM
|
|
|
OZONE-SITE.XML_ozone.om.web.authentication.kerberos.keytab=/etc/security/keytabs/HTTP.keytab
|
|
|
-OZONE-SITE.XML_ozone.scm.block.client.address=scm
|
|
|
-OZONE-SITE.XML_ozone.scm.client.address=scm
|
|
|
-HDFS-SITE.XML_dfs.namenode.name.dir=/data/namenode
|
|
|
-HDFS-SITE.XML_dfs.datanode.plugins=org.apache.hadoop.ozone.HddsDatanodeService
|
|
|
-HDFS-SITE.XML_dfs.block.access.token.enable=true
|
|
|
-HDFS-SITE.XML_dfs.namenode.kerberos.principal=nn/namenode@EXAMPLE.COM
|
|
|
-HDFS-SITE.XML_dfs.namenode.keytab.file=/etc/security/keytabs/nn.keytab
|
|
|
HDFS-SITE.XML_dfs.datanode.kerberos.principal=dn/datanode@EXAMPLE.COM
|
|
|
HDFS-SITE.XML_dfs.datanode.keytab.file=/etc/security/keytabs/dn.keytab
|
|
|
-HDFS-SITE.XML_dfs.namenode.kerberos.internal.spnego.principal=HTTP/namenode@EXAMPLE.COM
|
|
|
HDFS-SITE.XML_dfs.web.authentication.kerberos.principal=HTTP/_HOST@EXAMPLE.COM
|
|
|
HDFS-SITE.XML_dfs.web.authentication.kerberos.keytab=/etc/security/keytabs/HTTP.keytab
|
|
|
HDFS-SITE.XML_dfs.datanode.address=0.0.0.0:1019
|
|
|
HDFS-SITE.XML_dfs.datanode.http.address=0.0.0.0:1012
|
|
|
-HDFS-SITE.XML_dfs.namenode.rpc-address=namenode:9000
|
|
|
CORE-SITE.XML_dfs.data.transfer.protection=authentication
|
|
|
CORE-SITE.XML_hadoop.security.authentication=kerberos
|
|
|
CORE-SITE.XML_hadoop.security.auth_to_local=RULE:[2:$1@$0](.*)s/.*/root/
|
|
@@ -55,9 +46,51 @@ LOG4J.PROPERTIES_log4j.appender.stdout=org.apache.log4j.ConsoleAppender
|
|
|
LOG4J.PROPERTIES_log4j.appender.stdout.layout=org.apache.log4j.PatternLayout
|
|
|
LOG4J.PROPERTIES_log4j.appender.stdout.layout.ConversionPattern=%d{yyyy-MM-dd HH:mm:ss} %-5p %c{1}:%L - %m%n
|
|
|
|
|
|
+
|
|
|
+#Enable this variable to print out all hadoop rpc traffic to the stdout. See http://byteman.jboss.org/ to define your own instrumentation.
|
|
|
+#BYTEMAN_SCRIPT_URL=https://raw.githubusercontent.com/apache/hadoop/trunk/dev-support/byteman/hadooprpc.btm
|
|
|
+
|
|
|
+#LOG4J2.PROPERTIES_* are for Ozone Audit Logging
|
|
|
+LOG4J2.PROPERTIES_monitorInterval=30
|
|
|
+LOG4J2.PROPERTIES_filter=read,write
|
|
|
+LOG4J2.PROPERTIES_filter.read.type=MarkerFilter
|
|
|
+LOG4J2.PROPERTIES_filter.read.marker=READ
|
|
|
+LOG4J2.PROPERTIES_filter.read.onMatch=DENY
|
|
|
+LOG4J2.PROPERTIES_filter.read.onMismatch=NEUTRAL
|
|
|
+LOG4J2.PROPERTIES_filter.write.type=MarkerFilter
|
|
|
+LOG4J2.PROPERTIES_filter.write.marker=WRITE
|
|
|
+LOG4J2.PROPERTIES_filter.write.onMatch=NEUTRAL
|
|
|
+LOG4J2.PROPERTIES_filter.write.onMismatch=NEUTRAL
|
|
|
+LOG4J2.PROPERTIES_appenders=console, rolling
|
|
|
+LOG4J2.PROPERTIES_appender.console.type=Console
|
|
|
+LOG4J2.PROPERTIES_appender.console.name=STDOUT
|
|
|
+LOG4J2.PROPERTIES_appender.console.layout.type=PatternLayout
|
|
|
+LOG4J2.PROPERTIES_appender.console.layout.pattern=%d{DEFAULT} | %-5level | %c{1} | %msg | %throwable{3} %n
|
|
|
+LOG4J2.PROPERTIES_appender.rolling.type=RollingFile
|
|
|
+LOG4J2.PROPERTIES_appender.rolling.name=RollingFile
|
|
|
+LOG4J2.PROPERTIES_appender.rolling.fileName =${sys:hadoop.log.dir}/om-audit-${hostName}.log
|
|
|
+LOG4J2.PROPERTIES_appender.rolling.filePattern=${sys:hadoop.log.dir}/om-audit-${hostName}-%d{yyyy-MM-dd-HH-mm-ss}-%i.log.gz
|
|
|
+LOG4J2.PROPERTIES_appender.rolling.layout.type=PatternLayout
|
|
|
+LOG4J2.PROPERTIES_appender.rolling.layout.pattern=%d{DEFAULT} | %-5level | %c{1} | %msg | %throwable{3} %n
|
|
|
+LOG4J2.PROPERTIES_appender.rolling.policies.type=Policies
|
|
|
+LOG4J2.PROPERTIES_appender.rolling.policies.time.type=TimeBasedTriggeringPolicy
|
|
|
+LOG4J2.PROPERTIES_appender.rolling.policies.time.interval=86400
|
|
|
+LOG4J2.PROPERTIES_appender.rolling.policies.size.type=SizeBasedTriggeringPolicy
|
|
|
+LOG4J2.PROPERTIES_appender.rolling.policies.size.size=64MB
|
|
|
+LOG4J2.PROPERTIES_loggers=audit
|
|
|
+LOG4J2.PROPERTIES_logger.audit.type=AsyncLogger
|
|
|
+LOG4J2.PROPERTIES_logger.audit.name=OMAudit
|
|
|
+LOG4J2.PROPERTIES_logger.audit.level=INFO
|
|
|
+LOG4J2.PROPERTIES_logger.audit.appenderRefs=rolling
|
|
|
+LOG4J2.PROPERTIES_logger.audit.appenderRef.file.ref=RollingFile
|
|
|
+LOG4J2.PROPERTIES_rootLogger.level=INFO
|
|
|
+LOG4J2.PROPERTIES_rootLogger.appenderRefs=stdout
|
|
|
+LOG4J2.PROPERTIES_rootLogger.appenderRef.stdout.ref=STDOUT
|
|
|
+
|
|
|
+
|
|
|
OZONE_DATANODE_SECURE_USER=root
|
|
|
CONF_DIR=/etc/security/keytabs
|
|
|
-KERBEROS_KEYTABS=dn nn om scm HTTP testuser
|
|
|
+KERBEROS_KEYTABS=dn om scm HTTP testuser
|
|
|
KERBEROS_KEYSTORES=hadoop
|
|
|
KERBEROS_SERVER=ozone.kdc
|
|
|
JAVA_HOME=/usr/lib/jvm/java-8-openjdk-amd64/
|