集成kerberos的kudu 访问
kudu Api (java)
1. 首先需要进行kerberos的验证(需要将相应用户的keytab文件引入本地)
代码如下:
public class KuduKerberosAuth {
/**
* 初始化访问Kerberos访问
* @param debug 是否启用Kerberos的Debug模式
*/
public static void initKerberosENV(Boolean debug) {
try {
System.setProperty("java.security.krb5.conf","D:\\cdh\\kudu\\src\\main\\kerberos\\krb5.conf");
// System.setProperty("java.security.krb5.conf","/lvm/data3/zhc/krb5.conf");
System.setProperty("javax.security.auth.useSubjectCredsOnly", "false");
if (debug){
System.setProperty("sun.security.krb5.debug", "true");
}
UserGroupInformation.loginUserFromKeytab("gree1@GREE.IO", "D:\\cdh\\kudu\\src\\main\\kerberos\\gree1.keytab");
// UserGroupInformation.loginUserFromKeytab("gree1@GREE.IO", "/lvm/data3/zhc/gree1.keytab");
System.out.println(UserGroupInformation.getCurrentUser());
} catch(Exception e) {
e.printStackTrace();
}
}
}
2.Maven 依赖
<properties>
<kudu-version>1.10.0-cdh6.3.0</kudu-version>
</properties>
<dependencies>
<!--认证依赖-->
<dependency>
<groupId>org.apache.hadoop</groupId>
<artifactId>hadoop-client</artifactId>
<version>3.0.0-cdh6.3.0</version>
</dependency>
<dependency>
<groupId>org.apache.hadoop</groupId>
<artifactId>hadoop-common</artifactId>
<version>3.0.0-cdh6.3.0</version>
</dependency>
<dependency>
<groupId>org.apache.kudu</groupId>
<artifactId>kudu-client</artifactId>
<version>${kudu-version}</version>
</dependency>
<dependency>
<groupId>org.slf4j</groupId>
<artifactId>slf4j-simple</artifactId>
<version>1.7.25</version>
</dependency>
</dependencies>
3.引入hadoop 配置文件
文件放到resources 文件夹里面要放到根目录下面
1.core-site.xml
4. 进行访问
代码如下:
获取kudu客户端
import org.apache.hadoop.security.UserGroupInformation;
import org.apache.kudu.client.KuduClient;
import java.io.IOException;
import java.security.PrivilegedExceptionAction;
public class GetKuduClient {
private static final String KUDU_MASTERS = System.getProperty("kuduMasters", "cdh-master01:7051,cdh-master02:7051,cdh-master03:7051");
public static KuduClient getKuduClient() {
KuduClient client = null;
try {
client = UserGroupInformation.getLoginUser().doAs(
new PrivilegedExceptionAction<KuduClient>() {
@Override
public KuduClient run() throws Exception {
return new KuduClient.KuduClientBuilder(KUDU_MASTERS).build();
}
}
);
} catch (IOException e) {
e.printStackTrace();
} catch (InterruptedException e) {
e.printStackTrace();
}
return client;
}
}
main函数
import kudutest.KuduApiTest;
import kudutest.client.GetKuduClient;
import org.apache.kudu.client.KuduClient;
import kudujavautil.KuduKerberosAuth;
public class KuduApiMain {
public static void main(String[] args) {
/*
* 通过kerberos 认证
* */
KuduKerberosAuth.initKerberosENV(false);
/*
* 获取kudu客户端
* */
KuduClient client= GetKuduClient.get