kafka开kerberos认证报错the client is being asked for a password

在Kafka开发调试中遇到Kerberos认证错误,具体表现为Krb5LoginModule登录异常,提示客户端不支持获取用户密码。错误的根本原因是keytab文件与principle不匹配。解决方案是更新正确的keytab文件以匹配principle。
摘要由CSDN通过智能技术生成

@Kafka kerberos认证错误记录TOC

kafka开发调试 kerberos认证错误记录

背景

kafka 开发调试,开 kerberos情况下遇到的错误。

错误日志

Could not login: the client is being asked for a password, but the Kafka client code does not currently support obtaining a password from the user. not available to garner authentication information from the user
error日志在这里插入图片描述

Caused by: javax.security.auth.login.LoginException: Could not login: the client is being asked for a password, but the Kafka client code does not currently support obtaining a password from the user. not available to garner authentication information from the user
at com.sun.security.auth.module.Krb5LoginModule.promptForPass(Krb5LoginModule.java:940) ~[na:1.8.0_121]
at com.sun.security.auth.module.Krb5LoginModule.attemptAuthentication(Krb5LoginModule.java:760) ~[na:1.8.0_121]
at com.sun.security.auth.module.Krb5LoginModule.login(Krb5LoginModule.java:617) ~[na:1.8.0_121]
at sun.reflect.NativeMethodAccessorImpl.invoke0(Native Method) ~[na:1.8.0_121]
at sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:62) ~[na:1.8.0_121]
at sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:43) ~[na:1.8.0_121]
at java.lang.reflect.Method.invoke(Method.java:498) ~[na:1.8.0_121]
at javax.security.auth.login.LoginContext.invoke(LoginContext.java:755) ~[na:1.8.0_121]
at javax.security.auth.login.LoginContext.access$000(LoginContext.java:195) ~[na:1.8.0_121]
a

错误原因

由于 keytab与principle 不匹配引发的。

解决方式

更新一下正确 keytab 文件 就OK了.

评论 2
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值