Document URL ============ https://access.redhat.com/documentation/en-US/Red_Hat_Storage/3/html-single/Administration_Guide/index.html Describe the issue ================== Our documentation doesn't contain proper description of "Secure Hadoop" setup for RHS/Hadoop (users managed by LDAP with Kerberos auth) with IPA IdM. While it may seem that such setup is straightforward, there are few peculiarities and known issues which makes the whole process complicated. That said, I consider this useful even if there were no such issues. Suggestions for improvement =========================== We need to document the whole process entirely. But to make validation of this BZ easier, we should not forget descriton of: * create hadoop users, hadoop system users a hadoop service via IPA * how to create keytabs properly (related known issues: BZ 1200357) note: rhs-hadoop QE has this automated - maybe we can polish the script and provide it to the customers as an example? * ipa tweaking: setting password for ipa users https://access.redhat.com/solutions/451333 * workaround for ambari issue with LDAP (AMBARI-8466), already documented in "7.6. Troubleshooting" of installation guide though * workaround for ambari issue with secure mode (AMBARI-9966) * reenabling original yarn.nodemanager.container-executor.class (disabling our workaround introduced in BZ 1090705) Another problem is that there are few issues with related sections of HDP documentation or Ambari as well (eg. AMBARI-9071). Maybe we can cooperate on this.
Moreover I think it would be useful to extend troubleshooting section with errors typical when some of required workaround is omitted.
Red Hat Gluster Storage integrated using the Hadoop Plug-In is deprecated as of Red Hat Gluster Storage 3.1 Update 2. Hence, closing the bug.