Enabling SSL for HDP Components
The following table contains links to instructions for enabling SSL on specific HDP components.
Note | |
---|---|
These instructions assume that you have already created keys and signed certificates for each component of interest, across your cluster. (See the section called “Enabling SSL: Understanding the Hadoop SSL Keystore Factory” for more information.) |
Table 4.2. Configure SSL Data Protection for HDP Components
HDP Component | Notes/Link |
---|---|
Hadoop, MapReduce, YARN | the section called “Enabling RPC Encryption”; the section called “Enable SSL for WebHDFS, MapReduce Shuffle, Tez, and YARN” |
Oozie | the section called “Enable SSL on Oozie” |
HBase | the section called “Enable SSL on the HBase REST Server” |
Hive (HiveServer2) | the section called “Enable SSL on HiveServer2” |
Kafka | the section called “Enable SSL for Kafka Clients” |
Ambari Server | Set Up SSL for Ambari |
Falcon | Enabled by default (see Installing the Falcon Package) |
Sqoop | Clients of Hive and HBase, see Hortonworks Data Platform Data Movement and Integration, Apache Sqoop |
Knox Gateway | Configure SSL for Knox |
Flume | Apache Flume Component Guide |
Accumulo | Apache Foundation Blog, Apache Accumulo: Generating Keystores for configuring Accumulo with SSL |
Phoenix | Command Line Installation, Installing Apache Phoenix: Configuring Phoenix for Security and Apache Phoenix, Flume Plug-in |
HUE | Command Line Installation, Installing Hue, Configure Hue |