使用kadmin创建一个bde的principal
kadmin.local
Authenticating as principal root/admin@HADOOP.COM with password.
kadmin.local: addprinc bde@HADOOP.COM
WARNING: no policy specified for bde@HADOOP.COM; defaulting to no policy
Enter password for principal "bde@HADOOP.COM":
Re-enter password for principal "bde@HADOOP.COM":
Principal "bde@HADOOP.COM" created.
kadmin.local: q
使用bde用户登录Kerberos
用户id小于1000 要修改yarn配置 min.user.id
[root@deploy-1 ~]# kdestroy
kdestroy: No credentials cache found while destroying cache
[root@deploy-1 ~]# kinit bde
Password for bde@HADOOP.COM:
[root@deploy-1 ~]# klist
Ticket cache: FILE:/tmp/krb5cc_0
Default principal: bde@HADOOP.COM
Valid starting Expires Service principal
06/25/2021 11:40:04 06/26/2021 11:40:04 krbtgt/HADOOP.COM@HADOOP.COM
renew until 07/02/2021 11:40:04
hadoop fs -ls /
hadoop jar /opt/cloudera/parcels/CDH/lib/hadoop-mapreduce/hadoop-mapreduce-examples.jar pi 10 1
hive
kafka_create.sh kerberos 1 1
spark-shell --master yarn --deploy-mode client