Cloudera Manager ▶︎ Release Notes ▶︎ Cloudera Manager 7.6.5 Release Notes What's New in Cloudera Manager 7.6.5 Fixed Issues in Cloudera Manager 7.6.5 Known Issues in Cloudera Manager 7.6.5 ▶︎ Cumulative hotfixes Cloudera Manager 7.6.5 Cumulative hotfix 1 Cloudera Manager 7.6.5 Cumulative hotfix 2 Cloudera Manager 7.6.5 Cumulative hotfix 3 Cloudera Manager 7.6.5 Cumulative hotfix 4 Cloudera Manager 7.6.5 Cumulative hotfix 5 ▶︎ Overview Overview Terminology Architecture State Management ▶︎ Cloudera Manager Admin Console Home Page Automatic Logout Software Distribution Management Process Management Host Management Cloudera Manager Agents Resource Management User Management Security Management Monitoring a Cluster Using Cloudera Manager Cloudera Management Service Cluster Configuration Overview Server and Client Configuration Cloudera Manager API ▶︎ Virtual Private Clusters and Cloudera SDX Advantages of Separating Compute and Data Resources Architecture Performance Trade Offs Compatibility Considerations for Virtual Private Clusters Networking Considerations for Virtual Private Clusters ▶︎ Security Overview Overview Authentication Overview ▶︎ Encryption Overview Encryption Mechanisms Authorization Overview Using metadata for cluster governance ▶︎ Installation & Upgrade ▶︎ Installing CDP Private Cloud Base CDP Private Cloud Base Installation Guide ▶︎ Version and Download Information Cloudera Manager Version Information Cloudera Manager Download Information Cloudera Runtime Version Information Cloudera Runtime Download Information Cloudera Manager support for Cloudera Runtime and CDH CDP Private Cloud Base Trial Download Information ▶︎ CDP Private Cloud Base Requirements and Supported Versions ▶︎ Hardware Requirements ▶︎ Cloudera Manager Cloudera Manager Server Service Monitor Requirements Host Monitor Reports Manager Agent Hosts Event Server Alert Publisher ▶︎ Cloudera Runtime Atlas Data Analytics Studio (DAS) HDFS HBase Hive Hue Impala Kafka Key Trustee Server Key Trustee KMS Kudu Oozie Ozone Phoenix Ranger Search Spark YARN ZooKeeper Operating System Requirements Database Requirements Java Requirements Networking and Security Requirements Data at Rest Encryption Requirements ▶︎ Third-party filesystems IBM Spectrum Scale Dell EMC PowerScale ▶︎ Trial Installation ▶︎ Installing a Trial Cluster Before You Begin a Trial Installation Download the Trial version of CDP Private Cloud Base Run the Cloudera Manager Server Installer Install Cloudera Runtime Set Up a Cluster Using the Wizard Stopping the Embedded PostgreSQL Database Starting the Embedded PostgreSQL Database Changing Embedded PostgreSQL Database Passwords ▶︎ Migrating from the Cloudera Manager Embedded PostgreSQL Database Server to an External PostgreSQL Database Prerequisites Identify Roles that Use the Embedded Database Server Migrate Databases from the Embedded Database Server to the External PostgreSQL Database Server ▶︎ Installing and Configuring CDP with FIPS Overview Prerequisites Configure Cloudera Manager for FIPS Install and configure additional required components ▶︎ Production Installation ▶︎ Before You Install ▶︎ Storage Space Planning for Cloudera Manager Cluster Lifecycle Management with Cloudera Manager Configure Network Names Setting SELinux Mode Disabling the Firewall Enable an NTP Service Impala Requirements Runtime Cluster Hosts and Role Assignments Allocating Hosts for Key Trustee Server and Key Trustee KMS ▶︎ Configuring Local Package and Parcel Repositories ▶︎ Understanding Package Management Repository Configuration Files Listing Repositories ▶︎ Configuring a Local Package Repository ▶︎ Creating a Permanent Internal Repository Setting Up a Web Server Downloading and Publishing the Package Repository Creating a Temporary Internal Repository Configuring Hosts to Use the Internal Repository ▶︎ Configuring a Local Parcel Repository ▶︎ Using an Internally Hosted Remote Parcel Repository Setting Up a Web Server Downloading and Publishing the Parcel Repository Configuring Cloudera Manager to Use an Internal Remote Parcel Repository Using a Local Parcel Repository Configuring /tmp directory for cluster hosts Installing Cloudera Manager, Cloudera Runtime, and Managed Services Step 1: Configure a Repository for Cloudera Manager ▶︎ Step 2: Install Java Development Kit Installing OpenJDK on Cloudera Manager Installing OpenJDK for CDP Runtime Installing Oracle JDK for CDP Runtime Tuning JVM Garbage Collection Configuring a Custom Java Home Location ▶︎ Step 3: Install Cloudera Manager Server Install Cloudera Manager Packages ▶︎ Step 4. Install and Configure Databases Required Databases ▶︎ Install and Configure PostgreSQL for CDP Installing Postgres JDBC Driver Installing PostgreSQL Server Installing the psycopg2 Python package for PostgreSQL-backed Hue Configuring and Starting the PostgreSQL Server Install and Configure MySQL Install and Configure MariaDB ▶︎ Install and Configure Oracle Database Configuring the Hue Server to Store Data in the Oracle database ▶︎ Configuring a database for Ranger or Ranger KMS Configuring a Ranger or Ranger KMS Database: MySQL/MariaDB Configuring a Ranger or Ranger KMS Database: Oracle Configuring a Ranger or Ranger KMS Database: Oracle using /ServiceName format Configuring a PostgreSQL Database for Ranger or Ranger KMS Configure Ranger with SSL/TLS enabled PostgreSQL Database ▶︎ Configuring the Database for Streaming Components Configure PostgreSQL for Streaming Components Configuring MySQL for Streaming Components ▶︎ Step 5: Set up and configure the Cloudera Manager database Syntax for scm_prepare_database.sh ▶︎ Step 6: Install Runtime and Other Software Installation Wizard ▶︎ Step 7: Set Up a Cluster Using the Wizard Select Services Assign Roles Setup Database Enter Required Parameters Review Changes Command Details Summary (Recommended) Enable Auto-TLS Additional Steps for Apache Ranger ▶︎ Installing Apache Knox Apache Knox Install Role Parameters ▶︎ Setting Up Data at Rest Encryption for HDFS Installing Ranger KMS backed by a Database and HA Installing Ranger KMS backed with a Key Trustee Server and HA Installing a Java Keystore KMS Installing Cloudera Navigator Encrypt Installing Cloudera Navigator Key HSM Installing Ranger RMS ▶︎ Custom Installation Solutions ▶︎ Privileged commands for Cloudera Manager installation Prerequisites and exceptions for the example configuration Example configuration to add to the sudoers file ▶︎ Creating Virtual Images of Cluster Hosts Creating a Pre-Deployed Cloudera Manager Host Instantiating a Cloudera Manager Image Creating a Pre-Deployed Worker Host Instantiating a worker host ▶︎ Manually Install Cloudera Software Packages Install Cloudera Manager Packages Manually Install Cloudera Manager Agent Packages ▶︎ Installation Reference ▶︎ Ports Ports Used by Cloudera Manager Ports Used by Cloudera Navigator Key Trustee Server Ports Used by Cloudera Runtime Components Ports Used by DistCp Ports Used by Third-Party Components Service Dependencies in Cloudera Manager Cloudera Manager sudo command options Introduction to Parcels ▶︎ After You Install Deploying Clients Testing the Installation Checking Host Heartbeats Running a MapReduce Job Testing with Hue Deploying Atlas service Secure Your Cluster Installing the GPL Extras Parcel Configuring HDFS properties to optimize log collection Troubleshooting Installation Problems ▶︎ Uninstalling Cloudera Manager and Managed Software Record User Data Paths Stop all Services Deactivate and Remove Parcels Delete the Cluster Uninstall the Cloudera Manager Server Uninstall Cloudera Manager Agent and Managed Software Remove Cloudera Manager, User Data, and Databases Uninstalling a Runtime Component From a Single Host ▶︎ Custom Installation Scenarios Installing a Kafka-centric cluster ▶︎ Quick Start Deployment for a Streams Cluster Create a Streams Cluster on CDP Private Cloud Base ▶︎ Before You Install System Requirements for POC Streams Cluster Disable the Firewall Enable an NTP Service ▶︎ Installing a Trial Streaming Cluster Download the Trial version of CDP Private Cloud Base Run the Cloudera Manager Server Installer Install Cloudera Runtime Set Up a Streaming Cluster ▶︎ Getting Started on your Streams Cluster Create a Kafka Topic to Store your Events Write a few Events into the Topic Read the Events Monitor your Cluster from the SMM UI After Evaluating Trial Software Getting Started with CDP Upgrade and Migration ▶︎ Managing Clusters Accessing the Cloudera Manager Admin Console ▶︎ Adding and Deleting Clusters Adding a Compute Cluster and Data Context ▶︎ Adding a Cluster Using New Hosts Step 1: Welcome (Add Cluster - Installation) Step 2: Cluster Basics Step 3: Setup Auto-TLS Step 4: Specify Hosts Step 5: Select Repository Step 6: Select JDK Step 7: Enter Login Credentials Step 8: Install Agents Step 9: Install Parcels Step 11: Inspect Cluster ▶︎ Adding a Cluster Using Currently Managed Hosts Step 1: Welcome (Add Cluster - Installation) Step 2: Cluster Basics Step 3: Setup Auto-TLS Step 4: Specify Hosts Step 5: Select Repository Step 6: Install Parcels Step 8: Inspect Cluster Deleting a Cluster ▶︎ Tutorial: Using Impala, Hive and Hue with Virtual Private Clusters Set Up an Environment Using impala-shell and Hive View HDFS directory structure of Compute clusters Insert data in test_table through Spark Hue in a Virtual Private Cluster Environment Starting, Stopping, Refreshing, and Restarting a Cluster ▶︎ Pausing a Cluster in AWS Shutting Down and Starting Up the Cluster Renaming a Cluster ▶︎ Managing Hosts Viewing Host Status Adding a Host to a Cluster Parcels Configuring Hosts Viewing Host Role Assignments ▶︎ Host Templates Creating a Host Template Editing a Host Template Applying a Host Template to a Host Hosts Disks Overview ▶︎ Deleting Hosts Deleting a Host from Cloudera Manager Removing a Host From a Cluster Stopping All the Roles on a Host Starting All the Roles on a Host Changing Hostnames Moving a Host Between Clusters ▶︎ Configuring Upgrade Domains Configuring Upgrade Domains Changing the Upgrade Domain for hosts Putting all Hosts in an Upgrade Domain group into Maintenance Mode Specifying Racks for Hosts ▶︎ Performing Maintenance on a Cluster Host Decommissioning Hosts Recommissioning Hosts ▶︎ Tuning and Troubleshooting Host Decommissioning Tuning HDFS Prior to Decommissioning DataNodes Tuning HBase Prior to Decommissioning DataNodes Performance Considerations Troubleshooting Performance of Decommissioning Maintenance Mode Viewing the Maintenance Mode Status of a Cluster ▶︎ Managing Roles ▶︎ Role Instances Adding a Role Instance Starting, Stopping, and Restarting Role Instances Decommissioning Role Instances Recommissioning Role Instances Deleting Role Instances Configuring Roles to Use a Custom Garbage Collection Parameter ▶︎ Role Groups Creating a Role Group Managing Role Groups Default User Roles Backing up databases ▶︎ Managing Cloudera Runtime Services ▶︎ Adding a Service Prerequisites for installing Atlas Installing Atlas using Add Service Installing Ranger using Add Service Comparing Configurations for a Service Between Clusters Starting a Cloudera Runtime Service on All Hosts Stopping a Cloudera Runtime Service on All Hosts Restarting a Cloudera Runtime Service Rolling Restart Aborting a Pending Command Deleting Services Renaming a Service Configuring Maximum File Descriptors ▶︎ Extending Cloudera Manager Add-on Services Configuring Services to Use LZO Compression Core Configuration Service ▶︎ Performance Management ▶︎ Optimizing Performance in Cloudera Runtime Disabling Transparent Hugepages (THP) Setting the vm.swappiness Linux Kernel Parameter Improving Performance in Shuffle Handler and IFile Reader Tips and Best Practices for Jobs Decrease Reserve Space Choosing and Configuring Data Compression ▶︎ Managing Cloudera Manager Automatic Logout Starting, Stopping, and Restarting the Cloudera Manager Server ▶︎ Configuring Cloudera Manager Configuring Cloudera Manager Server Ports Configuring Network Settings for a Proxy Server Moving the Cloudera Manager Server to a New Host ▶︎ Migrating Embedded PostgreSQL Database to External PostgreSQL Database Step 1: Identify Roles that Use the Embedded Database Server Step 2: Migrate Databases from the Embedded Database Server to the External PostgreSQL Database Server ▶︎ Migrating from PostgreSQL Database Server to MySQL/Oracle Database Server Migrate from the Cloudera Manager External PostgreSQL Database Server to a MySQL/Oracle Database Server Managing Cloudera Manager Server Logs ▶︎ Cloudera Manager Agents Starting, Stopping, and Restarting Cloudera Manager Agents Configuring Cloudera Manager Agents Managing the Cloudera Manager Agent Logs ▶︎ Overview of Parcels Advantages of Parcels Parcel Life Cycle Parcel Locations Managing Parcels Viewing Parcel Usage Parcel Configuration Settings ▶︎ Managing Licenses Accessing the License Page Ending a CDP Private Cloud Base Trial Upgrading from a CDP Private Cloud Base Trial to CDP Private Cloud Base Renewing a License Cloudera Manager User Roles Other Tasks and Settings ▶︎ Cloudera Management Service Starting the Cloudera Management Service Stopping the Cloudera Management Service Restarting the Cloudera Management Service Starting and Stopping Cloudera Management Service Roles Configuring Management Service Database Limits Configuring a Secure Credential Storage Provider for Cloudera Manager (Technical Preview) ▶︎ Resource Management ▶︎ Static Service Pools Enabling and Configuring Static Service Pools Disabling Static Service Pools ▶︎ Linux Control Groups (cgroups) Enabling Resource Management with Control Groups Configuring Resource Parameters Configuring Custom Cgroups ▶︎ Data Storage for Monitoring Data Configuring Service Monitor Data Storage Configuring Host Monitor Data Storage Viewing Host and Service Monitor Data Storage Data Granularity and Time-Series Metric Data Moving Monitoring Data on an Active Cluster ▶︎ Host Monitor and Service Monitor Memory Configuration Configuring Memory Allocations ▶︎ Accessing Storage Using Amazon S3 Referencing S3 Credentials for YARN, MapReduce, or Spark Clients Referencing Amazon S3 in URIs Using Fast Upload with Amazon S3 Enabling Fast Upload using Cloudera Manager ▶︎ Configuring and Managing S3Guard Configuring S3Guard for Cluster Access to S3 Editing the S3Guard Configuration Running the Prune Command Using Cloudera Manager Admin Console Running the Prune Command Using the Cloudera Manager API How to Configure a MapReduce Job to Access S3 with an HDFS Credstore ▶︎ Importing Data into Amazon S3 Using Sqoop ▶︎ Authentication Using a Credential Provider to Secure S3 Credentials ▶︎ Sqoop Import into Amazon S3 Import Data from RDBMS into an S3 Bucket Import Data into S3 Bucket in Incremental Mode Import Data into an External Hive Table Backed by S3 S3Guard with Sqoop ▶︎ Accessing Storage Using Microsoft ADLS Configuring OAuth in Data Hub Configuring OAuth with core-site.xml Configuring OAuth with the Hadoop CredentialProvider Configuring Built-in TLS Acceleration ▶︎ Importing Data into Microsoft Azure Data Lake Store (Gen1 and Gen2) Using Sqoop Prerequisites Authentication Sqoop Import into ADLS ▶︎ Configuring Clusters Accessing the Cloudera Manager Admin Console ▶︎ Modifying Configuration Properties Using Cloudera Manager ▶︎ Changing the Configuration of a Service or Role Instance Searching for Properties Validation of Configuration Properties Overriding Configuration Properties Viewing and Editing Overridden Configuration Properties Resetting Configuration Properties to the Default Value Viewing and Editing Host Overrides Restarting Services and Instances after Configuration Changes ▶︎ Suppressing Configuration and Parameter Validation Warnings Suppressing a Configuration Validation in Cloudera Manager Managing Suppressed Validations Suppressing Configuration Validations Before They Trigger Warnings Viewing a List of All Suppressed Validations Cluster-Wide Configuration Custom Configuration Setting an Advanced Configuration Snippet for a Cloudera Runtime Service Setting an Advanced Configuration Snippet for a Cluster Stale Configurations ▶︎ Client Configuration Files How Client Configurations are Deployed Downloading Client Configuration Files Manually Redeploying Client Configuration Files ▶︎ Viewing and Reverting Configuration Changes Changes for a service, role, or host Changes for a cluster Autoconfiguration ▶︎ Using the Cloudera Manager API ▶︎ Using the Cloudera Manager API to backup and restore clusters Backing up the Cloudera Manager configuration Restoring the Cloudera Manager configuration ▶︎ Using the Cloudera Manager API to Manage and Configure Clusters Using the Cloudera Manager API for Cluster Automation Using the Cloudera Manager API to Obtain Configuration Files Using the Cloudera Manager API to Set Advanced Configuration Snippets (Safety Valves) Using Tags in Cloudera Manager Initiating HDFS failover using the Cloudera Manager API ▶︎ Creating a Runtime Cluster Using a Cloudera Manager Template Exporting the Cluster Configuration Preparing a New Cluster Creating the Template Importing the Template to a New Cluster Sample Python Code Disabling Redaction of sensitive information when using the Cloudera Manager API ▶︎ Monitoring and Diagnostics Accessing the Cloudera Manager Admin Console Monitoring and Diagnostics ▶︎ Time Line Selecting a Point In Time or a Time Range ▶︎ Health Tests Viewing Health Test Results Suppressing Health Test Results Suppressing a Health Test Configuring Suppression of Health Tests Before Tests Run Viewing a List of Suppressed Health Tests Unsuppressing Health Tests ▶︎ Viewing Charts for Cluster, Service, Role, and Host Instances Exporting Data from Charts Adding and Removing Charts from a Dashboard Creating Triggers from Charts ▶︎ Configuring Monitoring Settings Configuring Health Monitoring Configuring Service Monitoring Configuring Host Monitoring Configuring Directory Monitoring Configuring YARN Application Monitoring Configuring Impala Query Monitoring Configuring Impala Query Data Store Maximum Size Enabling Configuration Change Alerts Filtering Metrics ▶︎ Configuring Log Events Configuring Logs Configuring Logging Thresholds Configuring Log Directories Enabling and Disabling Log Event Capture Configuring Which Log Messages Become Events Configuring Log Alerts Monitoring Clusters ▶︎ Cluster Utilization Report overview Enable the Cluster Utilization Report Configure the Cluster Utilization Report ▶︎ Use the Cluster Utilization Report to manage resources Overview Tab YARN Tab Impala Tab Download the Cluster Utilization Report ▶︎ Creating a Custom Cluster Utilization Report Metrics and queries Impala query counter metrics Calculations for reports Retrieving metric data Querying metric data Inspecting Network Performance ▶︎ Monitoring Services ▶︎ Monitoring Service Status Viewing the URLs of the Client Configuration Files Viewing the Status of a Service Instance Viewing the Health and Status of a Role Instance Viewing the Maintenance Mode Status of a Cluster ▶︎ Viewing Service Status Viewing Past Status Status Summary Service Summary Health Tests and Health History ▶︎ Viewing Service Instance Details Role Instance Reference ▶︎ Viewing Role Instance Status The Actions Menu Viewing Past Status Summary Health Tests and Health History Status Summary Charts The Processes Tab Running Diagnostic Commands for Roles ▶︎ Periodic Stacks Collection Configuring Periodic Stacks Collection Viewing and Downloading Stacks Logs ▶︎ Viewing Running and Recent Commands Viewing Running and Recent Commands For a Cluster Viewing Running and Recent Commands for a Service or Role Command Details ▶︎ Monitoring Hosts Viewing All Hosts Role Assignments Viewing the Disks Overview Viewing the Hosts in a Cluster Viewing Individual Hosts ▶︎ Host Details Viewing Host Details Status Processes Resources Commands Configuration Components Audits Charts Library ▶︎ Host Inspector Running the Host Inspector Viewing Past Host Inspector Results ▶︎ Monitoring Activities Selecting Columns to Show in the Activities List Sorting the Activities List Filtering the Activities List Activity Charts Viewing the Jobs in a Pig, Oozie, or Hive Activity ▶︎ Task Attempts Viewing a Job's Task Attempts Selecting Columns to Show in the Tasks List Sorting the Tasks List Filtering the Tasks List Viewing Activity Details in a Report Format Comparing Similar Activities ▶︎ Viewing the Distribution of Task Attempts The Task Distribution Chart TaskTracker Hosts ▶︎ Monitoring Impala Queries Viewing Queries Configuring Impala Query Monitoring Impala Best Practices Results Tab Filtering Queries Filter Expressions Filter Attributes Choosing and Running a Filter Query Details ▶︎ Monitoring YARN Applications Viewing Jobs Configuring YARN Application Monitoring Results Tab Filtering Jobs Filter Expressions Choosing and Running a Filter Filter Attributes Sending Diagnostic Data to Cloudera for YARN Applications ▶︎ Monitoring Spark Applications Viewing and Debugging Spark Applications Using Logs Managing Spark Driver Logs Visualizing Spark Applications Using the Web Application UI Accessing the Web UI of a Running Spark Application Accessing the Web UI of a Completed Spark Application ▶︎ Events Viewing Events ▶︎ Filtering Events Adding an Event Filter Removing an Event Filter ▶︎ Alerts Managing Alerts Configuring Alert Email Delivery Configuring Alert SNMP Delivery ▶︎ Configuring Custom Alert Scripts Sample Custom Alert Script Enabling Configuration Change Alerts Enabling HBase Alerts Enabling Health Alerts Modifying the Health Threshold Configuring Alerts Transitioning Out of Alerting Health Threshold Configuring Log Alerts Configuring Alert Delivery ▶︎ Triggers Creating a Trigger Using the Expression Editor Editing, Deleting, Suppressing, or Deleting a Trigger ▶︎ Cloudera Manager Trigger Use Cases Creating a Trigger for Memory Capacity Creating a Trigger for CPU Capacity ▶︎ Lifecycle and Security Auditing Viewing Audit Events ▶︎ Filtering Audit Events Adding a Filter Removing a Filter Downloading Audit Events ▶︎ Charting Time-Series Data Terminology Building a Chart with Time-Series Data Configuring Time-Series Query Results Using Context-Sensitive Variables in Charts ▶︎ Chart Properties Changing the Chart Type Grouping (Faceting) Time Series Displaying Chart Details Editing a Chart Saving a Chart Obtaining Time-Series Data Using the API ▶︎ Dashboards Dashboard Types Creating a Dashboard Managing Dashboards Configuring Dashboards Saving Charts to Dashboards Saving Charts to a New Dashboard Saving Charts to an Existing Dashboard Adding a New Chart to the Custom Dashboard Removing a Chart from a Custom Dashboard Moving and Resizing Charts ▶︎ tsquery Language tsquery Syntax Metric Expressions Metric Expression Functions Predicates Discovering possible predicates Filtering by Day of Week or Hour of Day Time Series Attributes Time Series Entities and their Attributes FAQ ▶︎ Metric Aggregation Presentation of Aggregate Data Accessing Aggregate Statistics Through tsquery Filtering Metrics ▶︎ Logs Viewing Logs Logs List Filtering Logs Log Details ▶︎ Viewing the Cloudera Manager Server Log Viewing Cloudera Manager Server Logs in the Logs Page Viewing the Cloudera Manager Server Log ▶︎ Viewing the Cloudera Manager Agent Logs Viewing Cloudera Manager Agent Logs in the Logs Page Viewing the Cloudera Manager Agent Log Managing Disk Space for Log Files ▶︎ Reports ▶︎ Directory Usage Report Accessing the Directory Usage Report ▶︎ Using the Directory Usage Report Filters Disk Usage Reports ▶︎ Disk Usage Reports Viewing Current Disk Usage by User, Group, or Directory Viewing Historical Disk Usage by User, Group, or Directory Downloading Reports as CSV and XLS Files Activity, Application, and Query Reports ▶︎ The File Browser Searching Within the File System Enabling Snapshots Setting Quotas Designating Directories to Include in Disk Usage Reports Downloading HDFS Directory Access Permission Reports Cluster Support Tokens using Cloudera Manager ▶︎ Sending Usage and Diagnostic Data to Cloudera Configuring a Proxy Server Managing Anonymous Usage Data Collection Diagnostic Data Collection Configuring the Frequency of Diagnostic Data Collection Configuring collection of Cloudera Manager table data Specifying the Diagnostic Data Directory Redaction of Sensitive Information from Diagnostic Bundles Disabling the Automatic Sending of Diagnostic Data from a Manually Triggered Collection Manually Triggering Collection and Transfer of Diagnostic Data to Cloudera ▶︎ Troubleshooting Cluster Configuration and Operation Solutions to Common Problems Logs and Events ▶︎ Replication Manager Replication Manager in CDP Private Cloud Base Support matrix for Replication Manager on CDP Private Cloud Base Port requirements for Replication Manager on CDP Private Cloud Base ▶︎ Data replication Cloudera license requirements for Replication Manager Replicating directories with thousands of files and subdirectories Replication Manager log retention Replicating from unsecure to secure clusters ▶︎ Designating a replication source Configuring a peer Modifying peers Configuring peers with SAML authentication ▶︎ HDFS replication policies ▶︎ HDFS replication policy considerations Source data during replication Network latency during replication Performance and scalability limitations for HDFS replication policies Guidelines for using snapshot diff-based replication HDFS replication from Sentry-enabled clusters Creating HDFS replication policy Limiting replication hosts Viewing replication policies Viewing replication history Monitoring the performance of HDFS replication policies ▶︎ Hive/Impala replication policies ▶︎ Hive replication policy considerations Specifying hosts to improve Hive replication policy performance Hive tables and DDL commands Replication of parameters Hive external table replication in dynamic environments Creating a Hive/Impala replication policy Sentry to Ranger replication Replication of Impala and Hive User Defined Functions (UDFs) Monitoring the performance of Hive/Impala replication policies Enabling, disabling, or deleting a replication policy Replicating data to Impala clusters ▶︎ Enabling replication between clusters with Kerberos Authentication Ports Considerations for realm names HDFS, Hive, and Impala replication Kerberos connectivity test ▶︎ Replication of encrypted data Encrypting data in transit between clusters Security considerations ▶︎ Snapshots ▶︎ Cloudera Manager snapshot policies Managing snapshot policies Snapshots history Orphaned snapshots ▶︎ Managing HDFS snapshots Browsing HDFS directories Enabling and disabling HDFS snapshots Taking and deleting HDFS snapshots Restoring Snapshots ▶︎ Using snapshots with replication Hive/Impala replication with snapshots ▶︎ Security ▶︎ Configuring Authentication in Cloudera Manager Overview Kerberos Security Artifacts Overview Kerberos Configuration Strategies for CDP ▶︎ Configuring Authentication in Cloudera Manager Cloudera Manager user accounts ▶︎ Configuring external authentication and authorization for Cloudera Manager Configuring PAM authentication with LDAP and SSSD Configuring PAM authentication with Linux users Configuring PAM authentication using Apache Knox Configure authentication using Active Directory Configure authentication using an LDAP-compliant identity service Configure authentication using Kerberos (SPNEGO) Configure authentication using an external program Configure authentication using SAML ▶︎ Enabling Kerberos Authentication for CDP Step 1: Install Cloudera Manager and CDP Step 2: Install JCE policy files for AES-256 encryption Step 3: Create the Kerberos Principal for Cloudera Manager Server Step 4: Enable Kerberos using the wizard Step 5: Create the HDFS superuser Step 6: Get or create a Kerberos principal for each user account Step 7: Prepare the cluster for each user Step 8: Verify that Kerberos security is working Step 9: (Optional) Enable authentication for HTTP web consoles for Hadoop roles Kerberos authentication for non-default users ▶︎ Customizing Kerberos principals Configuring custom Kerberos principal for Atlas Configuring custom Kerberos principal for Cruise Control Configuring custom Kerberos principal for Apache Flink Configuring custom Kerberos principal for HBase Configuring custom Kerberos principal for HDFS Configuring custom Kerberos principal for Hive and Hive-on-Tez Configuring custom Kerberos principal for HttpFS Configuring custom Kerberos principal for Hue Configuring Kerberos Authentication Configuring the Kerberos principal used by Kafka Configuring custom Kerberos principal for Knox Configuring custom Kerberos principal for Kudu Configuring custom Kerberos principal for Livy Configuring custom Kerberos principal for NiFi and NiFi Registry Configuring custom Kerberos principal for Omid Configuring custom Kerberos principal for Oozie Configuring custom Kerberos principal for Ozone Configuring custom Kerberos principal for Phoenix Customizing the Kerberos principal for Schema Registry Configuring custom Kerberos principals and custom system users for Solr Configuring custom Kerberos principal for Spark Configuring custom Kerberos principal for Streams Messaging Manager Configuring custom Kerberos principal for SQL Stream Builder Configuring the Kerberos principal used by SRM Enabling custom Kerberos principal support in YARN Enabling custom Kerberos principal support in a Queue Manager cluster Configuring custom Kerberos principal for Zeppelin Configuring custom Kerberos principal for ZooKeeper Managing Kerberos credentials using Cloudera Manager Using a custom Kerberos keytab retrieval script Adding trusted realms to the cluster Using auth-to-local rules to isolate cluster users Configuring a dedicated MIT KDC for cross-realm trust Integrating MIT Kerberos and Active Directory Hadoop Users (user:group) and Kerberos Principals Mapping Kerberos Principals to Short Names ▶︎ Cloudera Authorization Overview Configuring LDAP Group Mappings Using Ranger to Provide Authorization in CDP ▶︎ Encrypting Data in Transit Encrypting Data in Transit Understanding Keystores and Truststores Choosing manual TLS or Auto-TLS SAN Certificates ▶︎ Configuring TLS Encryption for Cloudera Manager Using Auto-TLS Use case 1: Use Cloudera Manager to generate internal CA and corresponding certificates Use case 2: Enabling Auto-TLS with an intermediate CA signed by an existing Root CA Use case 3: Enabling Auto-TLS with Existing Certificates Manually Configuring TLS Encryption for Cloudera Manager ▶︎ Configuring TLS/SSL encryption manually for CDP Services Configuring TLS encryption manually for Apache Atlas Enable security for Cruise Control Configuring TLS/SSL encryption manually for DAS using Cloudera Manager Enabling security for Apache Flink ▶︎ Configuring TLS/SSL for HBase Prerequisites to configure TLS/SSL for HBase Configuring TLS/SSL for HBase Web UIs Configuring TLS/SSL for HBase REST Server Configuring TLS/SSL for HBase Thrift Server Enabling TLS/SSL for HiveServer ▶︎ Configuring TLS/SSL for Hue Creating a truststore file in PEM format Configuring Hue as a TLS/SSL client Enabling Hue as a TLS/SSL client Configuring Hue as a TLS/SSL server Enabling Hue as a TLS/SSL server using Cloudera Manager Enabling TLS/SSL for Hue Load Balancer Enabling TLS/SSL communication with HiveServer2 Enabling TLS/SSL communication with Impala Securing database connections with TLS/SSL Configuring Impala TLS/SSL ▶︎ Channel encryption Configure Kafka brokers Configure Kafka MirrorMaker Configuring TLS/SSL encryption Configure Kafka clients Configure Zookeeper TLS/SSL support for Kafka ▶︎ Authentication ▶︎ TLS/SSL client authentication Configure Kafka brokers Configure Kafka clients Principal name mapping Inter-broker security Configuring multiple listeners ▶︎ Configuring TLS/SSL encryption manually for Key Trustee Server Key Trustee Server Properties for TLS ▶︎ Configuring TLS/SSL encryption manually for Apache Knox Knox Properties for TLS Configuring TLS/SSL encryption for Kudu using Cloudera Manager Configure Lily HBase Indexer to use TLS/SSL Configuring TLS/SSL encryption manually for Livy ▶︎ Configuring TLS/SSL manually TLS/SSL certificate requirements and recommendations Configuring TLS/SSL encryption manually for NiFi and NiFi Registry NiFi TLS/SSL properties NiFi Registry TLS/SSL Properties Configure TLS/SSL for Oozie Configure TLS encryption manually for Phoenix Query Server Configure TLS/SSL encryption manually for Apache Ranger ▶︎ Configure TLS/SSL encryption manually for Ranger KMS Overriding custom keystore alias on a Ranger KMS Server Configure TLS/SSL encryption manually for Ranger RMS Configure TLS encryption manually for Schema Registry ▶︎ Configure TLS/SSL encryption for Solr Using a load balancer Configuring TLS/SSL encryption manually for Spark Encryption in SSB Enabling TLS/SSL for the SRM service ▶︎ Enabling TLS Encryption for SMM on CDP Private Cloud TLS/SSL settings for Streams Messaging Manager ▶︎ Configure TLS/SSL for Core Hadoop Services Configure TLS/SSL for HDFS Configure TLS/SSL for YARN Configuring TLS/SSL encryption manually for Zeppelin Configure ZooKeeper TLS/SSL using Cloudera Manager Manually Configuring TLS Encryption on the Agent Listening Port ▶︎ Encrypting Data at Rest Encrypting Data at Rest Data at Rest Encryption Reference Architecture Data at Rest Encryption Requirements Resource Planning for Data at Rest Encryption ▶︎ HDFS Transparent Encryption ▶︎ Key Concepts and Architecture Keystores and the Key Management Server Data Encryption Components and Solutions Encryption Zones and Keys Accessing Files Within an Encryption Zone Optimizing Performance for HDFS Transparent Encryption ▶︎ Managing Encryption Keys and Zones Validating Hadoop Key Operations Creating Encryption Zones Adding Files to an Encryption Zone Deleting Encryption Zones Backing Up Encryption Keys Rolling Encryption Keys ▶︎ Re-encrypting Encrypted Data Encryption Keys (EDEKs) Benefits and Capabilities Prerequisites and Assumptions Limitations Re-encrypting an EDEK Managing Re-encryption Operations ▶︎ Securing the Key Management System (KMS) Enabling Kerberos Authentication for the KMS Configuring TLS/SSL for the KMS Migrating Keys from a Java KeyStore to Cloudera Navigator Key Trustee Server ▶︎ Migrating Ranger Key Management Server Role Instances to a New Host Migrate the Ranger Admin role instance to a new host Migrate the Ranger KMS db role instance to a new host Migrate the Ranger KMS KTS role instance to a new host ▶︎ Migrating ACLs from Key Trustee KMS to Ranger KMS Key Trustee KMS operations not supported by Ranger KMS ACLs supported by Ranger KMS and Ranger KMS Mapping ▶︎ Configuring CDP Services for HDFS Encryption Transparent Encryption Recommendations for HBase ▶︎ Transparent Encryption Recommendations for Hive Changed Behavior after HDFS Encryption is Enabled KMS ACL Configuration for Hive Transparent Encryption Recommendations for Hue Transparent Encryption Recommendations for Impala Transparent Encryption Recommendations for MapReduce and YARN Transparent Encryption Recommendations for Search Transparent Encryption Recommendations for Spark Transparent Encryption Recommendations for Sqoop ▶︎ Integrating Components for Encrypting Data at Rest Set up Luna 7 HSM for Ranger KMS w/database Set up Luna 6 HSM for Ranger KMS, KTS, and KeyHSM Set up Luna 7 HSM for Ranger KMS, KTS, and KeyHSM Set up GCP Cloud HSM for Ranger KMS, KTS, and KeyHSM Set up CipherTrust HSM for Ranger KMS, KTS, and KeyHSM Configuring the Key HSM ▶︎ Using the Ranger Key Management Service Accessing the Ranger KMS Web UI List and Create Keys Roll Over an Existing Key Delete a Key ▶︎ Navigator Key Trustee Server ▶︎ Cloudera Navigator Key Trustee Server Overview Key Trustee Server System Requirements Cloudera Navigator Key Trustee Server ▶︎ Backing up Key Trustee Server and clients Back up Key Trustee Server using Cloudera Manager Back up Key Trustee Server using the ktbackup.sh script Back up Key Trustee Server manually Back up Key Trustee Server clients ▶︎ Restoring Navigator Key Trustee Server Restore Key Trustee Server in parcel-based installations Restore Key Trustee Server in package-based installations Restore Key Trustee Server from ktbackup.sh backups ▶︎ Initializing Standalone Key Trustee Server Initializing Standalone Key Trustee Server Using Cloudera Manager Specifying TLS/SSL Minimum Allowed Version and Ciphers Configuring a Mail Transfer Agent for Key Trustee Server Verifying Cloudera Navigator Key Trustee Server Operations Managing Key Trustee Server Organizations ▶︎ Managing Key Trustee Server Certificates Generating a New Certificate Replacing Key Trustee Server Certificates ▶︎ Setting Up Key Trustee Server High Availability Configuring Key Trustee Server High Availability Using Cloudera Manager Recovering a Key Trustee Server ▶︎ Navigator Encrypt Navigator Encrypt Overview Registering Cloudera Navigator Encrypt with Key Trustee Server Preparing for Encryption Using Cloudera Navigator Encrypt Encrypting and Decrypting Data Using Cloudera Navigator Encrypt Converting from Device Names to UUIDs for Encrypted Devices Navigator Encrypt Access Control List Maintaining Cloudera Navigator Encrypt ▶︎ Navigator Key HSM Cloudera Navigator Key HSM Overview Initializing Navigator Key HSM HSM-Specific Setup for Cloudera Navigator Key HSM Validating Key HSM Settings Managing the Navigator Key HSM Service Integrating Key HSM with Key Trustee Server Apache Ranger Access Control and Auditing Apache Knox Authentication ▶︎ Additional Security Topics How to Add Root and Intermediate CAs to Truststore for TLS/SSL Amazon S3 Security How to Authenticate Kerberos Principals Using Java Check Cluster Security Settings Configure Antivirus Software on CDP Hosts Configure Browser-based Interfaces to Require Authentication (SPNEGO) Configure Browsers for Kerberos Authentication (SPNEGO) Configure Cluster to Use Kerberos Authentication Convert DER, JKS, PEM Files for TLS/SSL Artifacts Configure Authentication for Amazon S3 Configure Encryption for Amazon S3 Configure AWS Credentials Enable Sensitive Data Redaction Log a Security Support Case Obtain and Deploy Keys and Certificates for TLS/SSL Renew and Redistribute Certificates Set Up a Gateway Host to Restrict Access to the Cluster Set Up Access to Cloudera EDH (Microsoft Azure Marketplace) Use Self-Signed Certificates for TLS Configuring Infra Solr Governance ▶︎ Troubleshooting Security Issues Troubleshooting Security Issues Error Messages and Various Failures Authentication and Kerberos Issues HDFS Encryption Issues Key Trustee KMS Encryption Issues TLS/SSL Issues ▶︎ YARN, MRv1, and Linux OS Security TaskController Error Codes (MRv1) ContainerExecutor Error Codes (YARN) ▼ Configuration Properties Reference ▼ Cloudera Manager Configuration Properties Reference for Cloudera Runtime 7.1.7 ADLS Connector Properties in Cloudera Runtime 7.1.7 Atlas Properties in Cloudera Runtime 7.1.7 Core Configuration Properties in Cloudera Runtime 7.1.7 Data Analytics Studio Properties in Cloudera Runtime 7.1.7 Data Context Connector Properties in Cloudera Runtime 7.1.7 HBase Properties in Cloudera Runtime 7.1.7 HDFS Properties in Cloudera Runtime 7.1.7 Hive Properties in Cloudera Runtime 7.1.7 Hive LLAP Properties in Cloudera Runtime 7.1.7 Hive on Tez Properties in Cloudera Runtime 7.1.7 Hue Properties in Cloudera Runtime 7.1.7 Impala Properties in Cloudera Runtime 7.1.7 Java KeyStore KMS Properties in Cloudera Runtime 7.1.7 Kafka Properties in Cloudera Runtime 7.1.7 Key Trustee KMS Properties in Cloudera Runtime 7.1.7 Key Trustee Server Properties in Cloudera Runtime 7.1.7 Key-Value Store Indexer Properties in Cloudera Runtime 7.1.7 Knox Properties in Cloudera Runtime 7.1.7 Kudu Properties in Cloudera Runtime 7.1.7 Livy Properties in Cloudera Runtime 7.1.7 Livy for Spark 3 Properties in Cloudera Runtime 7.1.7 Oozie Properties in Cloudera Runtime 7.1.7 Ozone Properties in Cloudera Runtime 7.1.7 Phoenix Properties in Cloudera Runtime 7.1.7 Ranger Properties in Cloudera Runtime 7.1.7 S3 Connector Properties in Cloudera Runtime 7.1.7 Schema Registry Properties in Cloudera Runtime 7.1.7 Solr Properties in Cloudera Runtime 7.1.7 Spark Properties in Cloudera Runtime 7.1.7 Spark 3 Properties in Cloudera Runtime 7.1.7 SQOOP_CLIENT Properties in Cloudera Runtime 7.1.7 Streams Messaging Manager Properties in Cloudera Runtime 7.1.7 Streams Replication Manager Properties in Cloudera Runtime 7.1.7 Tez Properties in Cloudera Runtime 7.1.7 YARN Properties in Cloudera Runtime 7.1.7 YARN Queue Manager Properties in Cloudera Runtime 7.1.7 Zeppelin Properties in Cloudera Runtime 7.1.7 ZooKeeper Properties in Cloudera Runtime 7.1.7 Host Configuration Properties Cloudera Manager Server Properties Cloudera Management Service ▶︎ Metrics Reference ▶︎ Cloudera Manager Metrics Metric Aggregation Accumulo Metrics Active Database Metrics Active Key Trustee Server Metrics Activity Metrics Activity Monitor Metrics Agent Metrics Alert Publisher Metrics Atlas Metrics Atlas Server Metrics Attempt Metrics Authentication Server Metrics Authentication Server Load Balancer Metrics Authentication Service Metrics Cloudera Management Service Metrics Cloudera Manager Server Metrics Cluster Metrics Core Configuration Metrics Cruise Control Metrics Cruise Control Server Metrics Data Analytics Studio Metrics Data Analytics Studio Eventprocessor Metrics Data Analytics Studio Webapp Server Metrics Data Discovery Service Agent Metrics DataNode Metrics Directory Metrics Disk Metrics Docker Server Metrics Ecs Agent Metrics Ecs Server Metrics Event Server Metrics Failover Controller Metrics Filesystem Metrics Flume Metrics Flume Channel Metrics Flume Sink Metrics Flume Source Metrics Garbage Collector Metrics HBase Metrics HBase REST Server Metrics HBase RegionServer Replication Peer Metrics HBase Thrift Server Metrics HDFS Metrics HDFS Cache Directive Metrics HDFS Cache Pool Metrics HRegion Metrics HTable Metrics History Server Metrics Hive Metrics Hive Execution Metrics Hive LLAP Metrics Hive Metastore Server Metrics Hive Table Metrics Hive on Tez Metrics HiveServer2 Metrics Host Metrics Host Monitor Metrics HttpFS Metrics Hue Metrics Hue Server Metrics Impala Metrics Impala Catalog Server Metrics Impala Daemon Metrics Impala Daemon Resource Pool Metrics Impala Llama ApplicationMaster Metrics Impala Pool Metrics Impala Pool User Metrics Impala Query Metrics Impala StateStore Metrics Isilon Metrics Java KeyStore KMS Metrics JobHistory Server Metrics JobTracker Metrics JournalNode Metrics Kafka Metrics Kafka Broker Metrics Kafka Broker Log Directory Metrics Kafka Broker Topic Metrics Kafka Broker Topic Partition Metrics Kafka Connect Metrics Kafka Connect Connector Sink Task Metrics Metrics Kafka Connect Connector Source Task Metrics Metrics Kafka Connect Connector Task Error Metrics Metrics Kafka Connect Connector Task Metrics Metrics Kafka Consumer Group Metrics Kafka MirrorMaker Metrics Kafka Producer Metrics Kafka Replica Metrics Kerberos Ticket Renewer Metrics Key Management Server Metrics Key Management Server Proxy Metrics Key Trustee KMS Metrics Key Trustee Server Metrics Key-Value Store Indexer Metrics Knox Metrics Knox Gateway Metrics Knox IDBroker Metrics Kudu Metrics Kudu Replica Metrics LLAP Proxy Metrics Lily HBase Indexer Metrics Livy Metrics Livy Server Metrics Livy Server for Spark 3 Metrics Livy for Spark 3 Metrics Load Balancer Metrics MapReduce Metrics Master Metrics Monitor Metrics NFS Gateway Metrics NameNode Metrics Navigator Audit Server Metrics Navigator HSM KMS backed by SafeNet Luna HSM Metrics Navigator HSM KMS backed by Thales HSM Metrics Navigator Luna KMS Metastore Metrics Navigator Luna KMS Proxy Metrics Navigator Metadata Server Metrics Navigator Thales KMS Metastore Metrics Navigator Thales KMS Proxy Metrics Network Interface Metrics NodeManager Metrics Omid Metrics Omid tso server Metrics Oozie Metrics Oozie Server Metrics Ozone Metrics Ozone DataNode Metrics Ozone Manager Metrics Ozone Prometheus Metrics Ozone Recon Metrics Passive Database Metrics Passive Key Trustee Server Metrics Phoenix Metrics Profiler Admin Agent Metrics Profiler Manager Metrics Profiler Metrics Agent Metrics Profiler Scheduler Metrics Profiler Scheduler Agent Metrics Query Processor Metrics Query Server Metrics Ranger Metrics Ranger Admin Metrics Ranger KMS Metrics Ranger KMS Server Metrics Ranger KMS Server with KTS Metrics Ranger KMS with Key Trustee Server Metrics Ranger RMS Metrics Ranger RMS Server Metrics Ranger Raz Metrics Ranger Raz Server Metrics Ranger Tagsync Metrics Ranger Usersync Metrics RegionServer Metrics Reports Manager Metrics ResourceManager Metrics S3 Gateway Metrics SRM Distributed Herder metrics Metrics SRM Driver Metrics SRM Service Metrics Schema Registry Metrics Schema Registry Server Metrics SecondaryNameNode Metrics Sentry Metrics Sentry Server Metrics Server Metrics Service Monitor Metrics Solr Metrics Solr Replica Metrics Solr Server Metrics Solr Shard Metrics Spark Metrics Spark 3 Metrics Storage Container Manager Metrics Streams Messaging Manager Metrics Streams Messaging Manager Rest Admin Server Metrics Streams Messaging Manager UI Server Metrics Streams Replication Manager Metrics Tablet Server Metrics TaskTracker Metrics Telemetry Publisher Metrics Tez Metrics Time Series Table Metrics Tracer Metrics User Metrics WebHCat Server Metrics YARN Metrics YARN Pool Metrics YARN Pool User Metrics YARN Queue Manager Metrics YARN Queue Manager Store Metrics YARN Queue Manager Webapp Metrics Zeppelin Metrics Zeppelin Server Metrics ZooKeeper Metrics common.service.type.docker Metrics common.service.type.ecs Metrics ▶︎ Health Tests Reference ▶︎ Cloudera Manager Health Tests Active Database Health Tests Active Key Trustee Server Health Tests Activity Monitor Health Tests Alert Publisher Health Tests Atlas Health Tests Atlas Server Health Tests Authentication Server Health Tests Authentication Server Load Balancer Health Tests Authentication Service Health Tests Cloudera Management Service Health Tests Cruise Control Health Tests Cruise Control Server Health Tests DOCKER Health Tests Data Analytics Studio Eventprocessor Health Tests Data Analytics Studio Webapp Server Health Tests Data Discovery Service Agent Health Tests DataNode Health Tests Docker Server Health Tests ECS Health Tests Ecs Agent Health Tests Ecs Server Health Tests Event Server Health Tests Failover Controller Health Tests Flume Health Tests Flume Agent Health Tests Garbage Collector Health Tests HBase Health Tests HBase REST Server Health Tests HBase Thrift Server Health Tests HDFS Health Tests History Server Health Tests Hive Health Tests Hive Execution Health Tests Hive LLAP Health Tests Hive Metastore Server Health Tests Hive on Tez Health Tests HiveServer2 Health Tests Host Health Tests Host Monitor Health Tests HttpFS Health Tests Hue Health Tests Hue Server Health Tests Impala Health Tests Impala Catalog Server Health Tests Impala Daemon Health Tests Impala Llama ApplicationMaster Health Tests Impala StateStore Health Tests JobHistory Server Health Tests JobTracker Health Tests JournalNode Health Tests Kafka Health Tests Kafka Broker Health Tests Kafka Connect Health Tests Kafka MirrorMaker Health Tests Kerberos Ticket Renewer Health Tests Key Management Server Health Tests Key Management Server Proxy Health Tests Key-Value Store Indexer Health Tests Knox Health Tests Knox Gateway Health Tests Knox IDBroker Health Tests Kudu Health Tests LLAP Proxy Health Tests Lily HBase Indexer Health Tests Livy Health Tests Livy Server Health Tests Livy Server for Spark 3 Health Tests Livy for Spark 3 Health Tests Load Balancer Health Tests MapReduce Health Tests Master Health Tests Monitor Health Tests NFS Gateway Health Tests NameNode Health Tests Navigator Audit Server Health Tests Navigator Luna KMS Metastore Health Tests Navigator Luna KMS Proxy Health Tests Navigator Metadata Server Health Tests Navigator Thales KMS Metastore Health Tests Navigator Thales KMS Proxy Health Tests NodeManager Health Tests Omid Health Tests Omid tso server Health Tests Oozie Health Tests Oozie Server Health Tests Ozone DataNode Health Tests Ozone Manager Health Tests Ozone Prometheus Health Tests Ozone Recon Health Tests Passive Database Health Tests Passive Key Trustee Server Health Tests Phoenix Health Tests Profiler Admin Agent Health Tests Profiler Metrics Agent Health Tests Profiler Scheduler Agent Health Tests Query Processor Health Tests Query Server Health Tests Ranger Health Tests Ranger Admin Health Tests Ranger KMS Health Tests Ranger KMS Server Health Tests Ranger KMS Server with KTS Health Tests Ranger KMS with Key Trustee Server Health Tests Ranger RMS Health Tests Ranger RMS Server Health Tests Ranger Raz Health Tests Ranger Raz Server Health Tests Ranger Tagsync Health Tests Ranger Usersync Health Tests RegionServer Health Tests Reports Manager Health Tests ResourceManager Health Tests S3 Gateway Health Tests SRM Driver Health Tests SRM Service Health Tests Schema Registry Health Tests Schema Registry Server Health Tests SecondaryNameNode Health Tests Sentry Health Tests Sentry Server Health Tests Service Monitor Health Tests Solr Health Tests Solr Server Health Tests Spark Health Tests Spark 3 Health Tests Sqoop 2 Health Tests Sqoop 2 Server Health Tests Storage Container Manager Health Tests Streams Messaging Manager Health Tests Streams Messaging Manager Rest Admin Server Health Tests Streams Messaging Manager UI Server Health Tests Streams Replication Manager Health Tests Tablet Server Health Tests TaskTracker Health Tests Telemetry Publisher Health Tests Tracer Health Tests WebHCat Server Health Tests YARN Health Tests YARN Queue Manager Store Health Tests YARN Queue Manager Webapp Health Tests Zeppelin Health Tests Zeppelin Server Health Tests ZooKeeper Health Tests ZooKeeper Server Health Tests ▶︎ Event Schema Reference AUDIT_EVENT Category HBASE Category HEALTH_CHECK Category LOG_MESSAGE Category ACTIVITY_EVENT Category SYSTEM Category ▶︎ Entities Reference ▶︎ Cloudera Manager Entity Types and Attributes Cloudera Manager Entity Types Cloudera Manager Entity Type Attributes Encryption Reference (Recommended) Enable Auto-TLS Aborting a Pending Command Accessing Aggregate Statistics Through tsquery Accessing Files Within an Encryption Zone Accessing Storage Using Amazon S3 Accessing Storage Using Microsoft ADLS Accessing the Cloudera Manager Admin Console Accessing the Cloudera Manager Admin Console Accessing the Cloudera Manager Admin Console Accessing the Directory Usage Report Accessing the License Page Accessing the Ranger KMS Web UI Accessing the Web UI of a Completed Spark Application Accessing the Web UI of a Running Spark Application Accumulo Metrics ACLs supported by Ranger KMS and Ranger KMS Mapping Active Database Health Tests Active Database Metrics Active Key Trustee Server Health Tests Active Key Trustee Server Metrics Activity Charts Activity Metrics Activity Monitor Health Tests Activity Monitor Metrics Activity, Application, and Query Reports ACTIVITY_EVENT Category Add-on Services Adding a Cluster Using Currently Managed Hosts Adding a Cluster Using New Hosts Adding a Compute Cluster and Data Context Adding a Filter Adding a Host to a Cluster Adding a New Chart to the Custom Dashboard Adding a Role Instance Adding a Service Adding an Event Filter Adding and Deleting Clusters Adding and Removing Charts from a Dashboard Adding Files to an Encryption Zone Adding trusted realms to the cluster Additional Security Topics Additional Steps for Apache Ranger ADLS Connector Properties in Cloudera Runtime 7.1.7 Advantages of Parcels Advantages of Separating Compute and Data Resources After Evaluating Trial Software After You Install Agent Hosts Agent Metrics Alert Publisher Alert Publisher Health Tests Alert Publisher Metrics Alerts Allocating Hosts for Key Trustee Server and Key Trustee KMS Amazon S3 Security Apache Knox Install Role Parameters Applying a Host Template to a Host Architecture Architecture Assign Roles Atlas Atlas Health Tests Atlas Metrics Atlas Properties in Cloudera Runtime 7.1.7 Atlas Server Health Tests Atlas Server Metrics Attempt Metrics Audits AUDIT_EVENT Category Authentication Authentication Authentication Authentication and Kerberos Issues Authentication Overview Authentication Server Health Tests Authentication Server Load Balancer Health Tests Authentication Server Load Balancer Metrics Authentication Server Metrics Authentication Service Health Tests Authentication Service Metrics Authorization Overview Autoconfiguration Automatic Logout Automatic Logout Back up Key Trustee Server clients Back up Key Trustee Server manually Back up Key Trustee Server using Cloudera Manager Back up Key Trustee Server using the ktbackup.sh script Backing up databases Backing Up Encryption Keys Backing up Key Trustee Server and clients Backing up the Cloudera Manager configuration Before You Begin a Trial Installation Before You Install Before You Install Benefits and Capabilities Browsing HDFS directories Building a Chart with Time-Series Data Calculations for reports CDP Private Cloud Base Installation Guide CDP Private Cloud Base Requirements and Supported Versions CDP Private Cloud Base Trial Download Information Changed Behavior after HDFS Encryption is Enabled Changes for a cluster Changes for a service, role, or host Changing Embedded PostgreSQL Database Passwords Changing Hostnames Changing the Chart Type Changing the Configuration of a Service or Role Instance Changing the Upgrade Domain for hosts Channel encryption Chart Properties Charting Time-Series Data Charts Charts Library Check Cluster Security Settings Checking Host Heartbeats Choosing and Configuring Data Compression Choosing and Running a Filter Choosing and Running a Filter Choosing manual TLS or Auto-TLS Client Configuration Files Cloudera Authorization Cloudera license requirements for Replication Manager Cloudera Management Service Cloudera Management Service Cloudera Management Service Cloudera Management Service Health Tests Cloudera Management Service Metrics Cloudera Manager Cloudera Manager Cloudera Manager 7.6.5 Cumulative hotfix 1 Cloudera Manager 7.6.5 Cumulative hotfix 2 Cloudera Manager 7.6.5 Cumulative hotfix 3 Cloudera Manager 7.6.5 Cumulative hotfix 4 Cloudera Manager 7.6.5 Cumulative hotfix 5 Cloudera Manager 7.6.5 Release Notes Cloudera Manager Admin Console Cloudera Manager Agents Cloudera Manager Agents Cloudera Manager API Cloudera Manager Configuration Properties Reference for Cloudera Runtime 7.1.7 Cloudera Manager Download Information Cloudera Manager Entity Type Attributes Cloudera Manager Entity Types Cloudera Manager Entity Types and Attributes Cloudera Manager Health Tests Cloudera Manager Metrics Cloudera Manager Server Cloudera Manager Server Metrics Cloudera Manager Server Properties Cloudera Manager snapshot policies Cloudera Manager sudo command options Cloudera Manager support for Cloudera Runtime and CDH Cloudera Manager Trigger Use Cases Cloudera Manager user accounts Cloudera Manager User Roles Cloudera Manager Version Information Cloudera Navigator Key HSM Overview Cloudera Navigator Key Trustee Server Cloudera Navigator Key Trustee Server Overview Cloudera Runtime Cloudera Runtime Download Information Cloudera Runtime Version Information Cluster Configuration Overview Cluster Lifecycle Management with Cloudera Manager Cluster Metrics Cluster Support Tokens using Cloudera Manager Cluster Utilization Report overview Cluster-Wide Configuration Command Details Command Details Commands common.service.type.docker Metrics common.service.type.ecs Metrics Comparing Configurations for a Service Between Clusters Comparing Similar Activities Compatibility Considerations for Virtual Private Clusters Components Configuration Configuration Properties Reference Configure Antivirus Software on CDP Hosts Configure Authentication for Amazon S3 Configure authentication using Active Directory Configure authentication using an external program Configure authentication using an LDAP-compliant identity service Configure authentication using Kerberos (SPNEGO) Configure authentication using SAML Configure AWS Credentials Configure Browser-based Interfaces to Require Authentication (SPNEGO) Configure Browsers for Kerberos Authentication (SPNEGO) Configure Cloudera Manager for FIPS Configure Cluster to Use Kerberos Authentication Configure Encryption for Amazon S3 Configure Kafka brokers Configure Kafka brokers Configure Kafka clients Configure Kafka clients Configure Kafka MirrorMaker Configure Lily HBase Indexer to use TLS/SSL Configure Network Names Configure PostgreSQL for Streaming Components Configure Ranger with SSL/TLS enabled PostgreSQL Database Configure the Cluster Utilization Report Configure TLS encryption manually for Phoenix Query Server Configure TLS encryption manually for Schema Registry Configure TLS/SSL encryption for Solr Configure TLS/SSL encryption manually for Apache Ranger Configure TLS/SSL encryption manually for Ranger KMS Configure TLS/SSL encryption manually for Ranger RMS Configure TLS/SSL for Core Hadoop Services Configure TLS/SSL for HDFS Configure TLS/SSL for Oozie Configure TLS/SSL for YARN Configure Zookeeper TLS/SSL support for Kafka Configure ZooKeeper TLS/SSL using Cloudera Manager Configuring /tmp directory for cluster hosts Configuring a Custom Java Home Location Configuring a database for Ranger or Ranger KMS Configuring a dedicated MIT KDC for cross-realm trust Configuring a Local Package Repository Configuring a Local Parcel Repository Configuring a Mail Transfer Agent for Key Trustee Server Configuring a peer Configuring a PostgreSQL Database for Ranger or Ranger KMS Configuring a Proxy Server Configuring a Ranger or Ranger KMS Database: MySQL/MariaDB Configuring a Ranger or Ranger KMS Database: Oracle Configuring a Ranger or Ranger KMS Database: Oracle using /ServiceName format Configuring a Secure Credential Storage Provider for Cloudera Manager (Technical Preview) Configuring Alert Delivery Configuring Alert Email Delivery Configuring Alert SNMP Delivery Configuring Alerts Transitioning Out of Alerting Health Threshold Configuring and Managing S3Guard Configuring and Starting the PostgreSQL Server Configuring Authentication in Cloudera Manager Configuring Authentication in Cloudera Manager Configuring Built-in TLS Acceleration Configuring CDP Services for HDFS Encryption Configuring Cloudera Manager Configuring Cloudera Manager Agents Configuring Cloudera Manager Server Ports Configuring Cloudera Manager to Use an Internal Remote Parcel Repository Configuring Clusters Configuring collection of Cloudera Manager table data Configuring Custom Alert Scripts Configuring Custom Cgroups Configuring custom Kerberos principal for Apache Flink Configuring custom Kerberos principal for Atlas Configuring custom Kerberos principal for Cruise Control Configuring custom Kerberos principal for HBase Configuring custom Kerberos principal for HDFS Configuring custom Kerberos principal for Hive and Hive-on-Tez Configuring custom Kerberos principal for HttpFS Configuring custom Kerberos principal for Hue Configuring custom Kerberos principal for Knox Configuring custom Kerberos principal for Kudu Configuring custom Kerberos principal for Livy Configuring custom Kerberos principal for NiFi and NiFi Registry Configuring custom Kerberos principal for Omid Configuring custom Kerberos principal for Oozie Configuring custom Kerberos principal for Ozone Configuring custom Kerberos principal for Phoenix Configuring custom Kerberos principal for Spark Configuring custom Kerberos principal for SQL Stream Builder Configuring custom Kerberos principal for Streams Messaging Manager Configuring custom Kerberos principal for Zeppelin Configuring custom Kerberos principal for ZooKeeper Configuring custom Kerberos principals and custom system users for Solr Configuring Dashboards Configuring Directory Monitoring Configuring external authentication and authorization for Cloudera Manager Configuring HDFS properties to optimize log collection Configuring Health Monitoring Configuring Host Monitor Data Storage Configuring Host Monitoring Configuring Hosts Configuring Hosts to Use the Internal Repository Configuring Hue as a TLS/SSL client Configuring Hue as a TLS/SSL server Configuring Impala Query Data Store Maximum Size Configuring Impala Query Monitoring Configuring Impala Query Monitoring Configuring Impala TLS/SSL Configuring Kerberos Authentication Configuring Key Trustee Server High Availability Using Cloudera Manager Configuring LDAP Group Mappings Configuring Local Package and Parcel Repositories Configuring Log Alerts Configuring Log Alerts Configuring Log Directories Configuring Log Events Configuring Logging Thresholds Configuring Logs Configuring Management Service Database Limits Configuring Maximum File Descriptors Configuring Memory Allocations Configuring Monitoring Settings Configuring multiple listeners Configuring MySQL for Streaming Components Configuring Network Settings for a Proxy Server Configuring OAuth in Data Hub Configuring OAuth with core-site.xml Configuring OAuth with the Hadoop CredentialProvider Configuring PAM authentication using Apache Knox Configuring PAM authentication with LDAP and SSSD Configuring PAM authentication with Linux users Configuring peers with SAML authentication Configuring Periodic Stacks Collection Configuring Resource Parameters Configuring Roles to Use a Custom Garbage Collection Parameter Configuring S3Guard for Cluster Access to S3 Configuring Service Monitor Data Storage Configuring Service Monitoring Configuring Services to Use LZO Compression Configuring Suppression of Health Tests Before Tests Run Configuring the Database for Streaming Components Configuring the Frequency of Diagnostic Data Collection Configuring the Hue Server to Store Data in the Oracle database Configuring the Kerberos principal used by Kafka Configuring the Kerberos principal used by SRM Configuring the Key HSM Configuring Time-Series Query Results Configuring TLS Encryption for Cloudera Manager Using Auto-TLS Configuring TLS encryption manually for Apache Atlas Configuring TLS/SSL encryption Configuring TLS/SSL encryption for Kudu using Cloudera Manager Configuring TLS/SSL encryption manually for Apache Knox Configuring TLS/SSL encryption manually for CDP Services Configuring TLS/SSL encryption manually for DAS using Cloudera Manager Configuring TLS/SSL encryption manually for Key Trustee Server Configuring TLS/SSL encryption manually for Livy Configuring TLS/SSL encryption manually for NiFi and NiFi Registry Configuring TLS/SSL encryption manually for Spark Configuring TLS/SSL encryption manually for Zeppelin Configuring TLS/SSL for HBase Configuring TLS/SSL for HBase REST Server Configuring TLS/SSL for HBase Thrift Server Configuring TLS/SSL for HBase Web UIs Configuring TLS/SSL for Hue Configuring TLS/SSL for the KMS Configuring TLS/SSL manually Configuring Upgrade Domains Configuring Upgrade Domains Configuring Which Log Messages Become Events Configuring YARN Application Monitoring Configuring YARN Application Monitoring Considerations for realm names ContainerExecutor Error Codes (YARN) Convert DER, JKS, PEM Files for TLS/SSL Artifacts Converting from Device Names to UUIDs for Encrypted Devices Core Configuration Metrics Core Configuration Properties in Cloudera Runtime 7.1.7 Core Configuration Service Create a Kafka Topic to Store your Events Create a Streams Cluster on CDP Private Cloud Base Creating a Custom Cluster Utilization Report Creating a Dashboard Creating a Hive/Impala replication policy Creating a Host Template Creating a Permanent Internal Repository Creating a Pre-Deployed Cloudera Manager Host Creating a Pre-Deployed Worker Host Creating a Role Group Creating a Runtime Cluster Using a Cloudera Manager Template Creating a Temporary Internal Repository Creating a Trigger for CPU Capacity Creating a Trigger for Memory Capacity Creating a Trigger Using the Expression Editor Creating a truststore file in PEM format Creating Encryption Zones Creating HDFS replication policy Creating the Template Creating Triggers from Charts Creating Virtual Images of Cluster Hosts Cruise Control Health Tests Cruise Control Metrics Cruise Control Server Health Tests Cruise Control Server Metrics Cumulative hotfixes Custom Configuration Custom Installation Scenarios Custom Installation Solutions Customizing Kerberos principals Customizing the Kerberos principal for Schema Registry Dashboard Types Dashboards Data Analytics Studio (DAS) Data Analytics Studio Eventprocessor Health Tests Data Analytics Studio Eventprocessor Metrics Data Analytics Studio Metrics Data Analytics Studio Properties in Cloudera Runtime 7.1.7 Data Analytics Studio Webapp Server Health Tests Data Analytics Studio Webapp Server Metrics Data at Rest Encryption Reference Architecture Data at Rest Encryption Requirements Data at Rest Encryption Requirements Data Context Connector Properties in Cloudera Runtime 7.1.7 Data Discovery Service Agent Health Tests Data Discovery Service Agent Metrics Data Encryption Components and Solutions Data Granularity and Time-Series Metric Data Data replication Data Storage for Monitoring Data Database Requirements DataNode Health Tests DataNode Metrics Deactivate and Remove Parcels Decommissioning Hosts Decommissioning Role Instances Decrease Reserve Space Default User Roles Delete a Key Delete the Cluster Deleting a Cluster Deleting a Host from Cloudera Manager Deleting Encryption Zones Deleting Hosts Deleting Role Instances Deleting Services Dell EMC PowerScale Deploying Atlas service Deploying Clients Designating a replication source Designating Directories to Include in Disk Usage Reports Diagnostic Data Collection Directory Metrics Directory Usage Report Disable the Firewall Disabling Redaction of sensitive information when using the Cloudera Manager API Disabling Static Service Pools Disabling the Automatic Sending of Diagnostic Data from a Manually Triggered Collection Disabling the Firewall Disabling Transparent Hugepages (THP) Discovering possible predicates Disk Metrics Disk Usage Reports Disk Usage Reports Displaying Chart Details DOCKER Health Tests Docker Server Health Tests Docker Server Metrics Download the Cluster Utilization Report Download the Trial version of CDP Private Cloud Base Download the Trial version of CDP Private Cloud Base Downloading and Publishing the Package Repository Downloading and Publishing the Parcel Repository Downloading Audit Events Downloading Client Configuration Files Downloading HDFS Directory Access Permission Reports Downloading Reports as CSV and XLS Files Ecs Agent Health Tests Ecs Agent Metrics ECS Health Tests Ecs Server Health Tests Ecs Server Metrics Editing a Chart Editing a Host Template Editing the S3Guard Configuration Editing, Deleting, Suppressing, or Deleting a Trigger Enable an NTP Service Enable an NTP Service Enable security for Cruise Control Enable Sensitive Data Redaction Enable the Cluster Utilization Report Enabling and Configuring Static Service Pools Enabling and disabling HDFS snapshots Enabling and Disabling Log Event Capture Enabling Configuration Change Alerts Enabling Configuration Change Alerts Enabling custom Kerberos principal support in a Queue Manager cluster Enabling custom Kerberos principal support in YARN Enabling Fast Upload using Cloudera Manager Enabling HBase Alerts Enabling Health Alerts Enabling Hue as a TLS/SSL client Enabling Hue as a TLS/SSL server using Cloudera Manager Enabling Kerberos Authentication for CDP Enabling Kerberos Authentication for the KMS Enabling replication between clusters with Kerberos Authentication Enabling Resource Management with Control Groups Enabling security for Apache Flink Enabling Snapshots Enabling TLS Encryption for SMM on CDP Private Cloud Enabling TLS/SSL communication with HiveServer2 Enabling TLS/SSL communication with Impala Enabling TLS/SSL for HiveServer Enabling TLS/SSL for Hue Load Balancer Enabling TLS/SSL for the SRM service Enabling, disabling, or deleting a replication policy Encrypting and Decrypting Data Using Cloudera Navigator Encrypt Encrypting Data at Rest Encrypting Data at Rest Encrypting Data in Transit Encrypting Data in Transit Encrypting data in transit between clusters Encryption in SSB Encryption Mechanisms Encryption Overview Encryption Zones and Keys Ending a CDP Private Cloud Base Trial Enter Required Parameters Entities Reference Error Messages and Various Failures Event Schema Reference Event Server Event Server Health Tests Event Server Metrics Events Example configuration to add to the sudoers file Exporting Data from Charts Exporting the Cluster Configuration Extending Cloudera Manager Failover Controller Health Tests Failover Controller Metrics FAQ Filesystem Metrics Filter Attributes Filter Attributes Filter Expressions Filter Expressions Filtering Audit Events Filtering by Day of Week or Hour of Day Filtering Events Filtering Jobs Filtering Logs Filtering Metrics Filtering Metrics Filtering Queries Filtering the Activities List Filtering the Tasks List Filters Fixed Issues in Cloudera Manager 7.6.5 Flume Agent Health Tests Flume Channel Metrics Flume Health Tests Flume Metrics Flume Sink Metrics Flume Source Metrics Garbage Collector Health Tests Garbage Collector Metrics Generating a New Certificate Getting Started on your Streams Cluster Grouping (Faceting) Time Series Guidelines for using snapshot diff-based replication Hadoop Users (user:group) and Kerberos Principals Hardware Requirements HBase HBASE Category HBase Health Tests HBase Metrics HBase Properties in Cloudera Runtime 7.1.7 HBase RegionServer Replication Peer Metrics HBase REST Server Health Tests HBase REST Server Metrics HBase Thrift Server Health Tests HBase Thrift Server Metrics HDFS HDFS Cache Directive Metrics HDFS Cache Pool Metrics HDFS Encryption Issues HDFS Health Tests HDFS Metrics HDFS Properties in Cloudera Runtime 7.1.7 HDFS replication from Sentry-enabled clusters HDFS replication policies HDFS replication policy considerations HDFS Transparent Encryption HDFS, Hive, and Impala replication Health Tests Health Tests and Health History Health Tests and Health History Health Tests Reference HEALTH_CHECK Category History Server Health Tests History Server Metrics Hive Hive Execution Health Tests Hive Execution Metrics Hive external table replication in dynamic environments Hive Health Tests Hive LLAP Health Tests Hive LLAP Metrics Hive LLAP Properties in Cloudera Runtime 7.1.7 Hive Metastore Server Health Tests Hive Metastore Server Metrics Hive Metrics Hive on Tez Health Tests Hive on Tez Metrics Hive on Tez Properties in Cloudera Runtime 7.1.7 Hive Properties in Cloudera Runtime 7.1.7 Hive replication policy considerations Hive Table Metrics Hive tables and DDL commands Hive/Impala replication policies Hive/Impala replication with snapshots HiveServer2 Health Tests HiveServer2 Metrics Home Page Host Configuration Properties Host Details Host Health Tests Host Inspector Host Management Host Metrics Host Monitor Host Monitor and Service Monitor Memory Configuration Host Monitor Health Tests Host Monitor Metrics Host Templates Hosts Disks Overview How Client Configurations are Deployed How to Add Root and Intermediate CAs to Truststore for TLS/SSL How to Authenticate Kerberos Principals Using Java How to Configure a MapReduce Job to Access S3 with an HDFS Credstore HRegion Metrics HSM-Specific Setup for Cloudera Navigator Key HSM HTable Metrics HttpFS Health Tests HttpFS Metrics Hue Hue Health Tests Hue in a Virtual Private Cluster Environment Hue Metrics Hue Properties in Cloudera Runtime 7.1.7 Hue Server Health Tests Hue Server Metrics IBM Spectrum Scale Identify Roles that Use the Embedded Database Server Impala Impala Best Practices Impala Catalog Server Health Tests Impala Catalog Server Metrics Impala Daemon Health Tests Impala Daemon Metrics Impala Daemon Resource Pool Metrics Impala Health Tests Impala Llama ApplicationMaster Health Tests Impala Llama ApplicationMaster Metrics Impala Metrics Impala Pool Metrics Impala Pool User Metrics Impala Properties in Cloudera Runtime 7.1.7 Impala query counter metrics Impala Query Metrics Impala Requirements Impala StateStore Health Tests Impala StateStore Metrics Impala Tab Import Data from RDBMS into an S3 Bucket Import Data into an External Hive Table Backed by S3 Import Data into S3 Bucket in Incremental Mode Importing Data into Amazon S3 Using Sqoop Importing Data into Microsoft Azure Data Lake Store (Gen1 and Gen2) Using Sqoop Importing the Template to a New Cluster Improving Performance in Shuffle Handler and IFile Reader Initializing Navigator Key HSM Initializing Standalone Key Trustee Server Initializing Standalone Key Trustee Server Using Cloudera Manager Initiating HDFS failover using the Cloudera Manager API Insert data in test_table through Spark Inspecting Network Performance Install and configure additional required components Install and Configure MariaDB Install and Configure MySQL Install and Configure Oracle Database Install and Configure PostgreSQL for CDP Install Cloudera Manager Packages Install Cloudera Manager Packages Install Cloudera Runtime Install Cloudera Runtime Installation Reference Installation Wizard Installing a Java Keystore KMS Installing a Kafka-centric cluster Installing a Trial Cluster Installing a Trial Streaming Cluster Installing and Configuring CDP with FIPS Installing Apache Knox Installing Atlas using Add Service Installing CDP Private Cloud Base Installing Cloudera Manager, Cloudera Runtime, and Managed Services Installing Cloudera Navigator Encrypt Installing Cloudera Navigator Key HSM Installing OpenJDK for CDP Runtime Installing OpenJDK on Cloudera Manager Installing Oracle JDK for CDP Runtime Installing Postgres JDBC Driver Installing PostgreSQL Server Installing Ranger KMS backed by a Database and HA Installing Ranger KMS backed with a Key Trustee Server and HA Installing Ranger RMS Installing Ranger using Add Service Installing the GPL Extras Parcel Installing the psycopg2 Python package for PostgreSQL-backed Hue Instantiating a Cloudera Manager Image Instantiating a worker host Integrating Components for Encrypting Data at Rest Integrating Key HSM with Key Trustee Server Integrating MIT Kerberos and Active Directory Inter-broker security Introduction to Parcels Isilon Metrics Java KeyStore KMS Metrics Java KeyStore KMS Properties in Cloudera Runtime 7.1.7 Java Requirements JobHistory Server Health Tests JobHistory Server Metrics JobTracker Health Tests JobTracker Metrics JournalNode Health Tests JournalNode Metrics Kafka Kafka Broker Health Tests Kafka Broker Log Directory Metrics Kafka Broker Metrics Kafka Broker Topic Metrics Kafka Broker Topic Partition Metrics Kafka Connect Connector Sink Task Metrics Metrics Kafka Connect Connector Source Task Metrics Metrics Kafka Connect Connector Task Error Metrics Metrics Kafka Connect Connector Task Metrics Metrics Kafka Connect Health Tests Kafka Connect Metrics Kafka Consumer Group Metrics Kafka Health Tests Kafka Metrics Kafka MirrorMaker Health Tests Kafka MirrorMaker Metrics Kafka Producer Metrics Kafka Properties in Cloudera Runtime 7.1.7 Kafka Replica Metrics Kerberos authentication for non-default users Kerberos Configuration Strategies for CDP Kerberos connectivity test Kerberos Security Artifacts Overview Kerberos Ticket Renewer Health Tests Kerberos Ticket Renewer Metrics Key Concepts and Architecture Key Management Server Health Tests Key Management Server Metrics Key Management Server Proxy Health Tests Key Management Server Proxy Metrics Key Trustee KMS Key Trustee KMS Encryption Issues Key Trustee KMS Metrics Key Trustee KMS operations not supported by Ranger KMS Key Trustee KMS Properties in Cloudera Runtime 7.1.7 Key Trustee Server Key Trustee Server Metrics Key Trustee Server Properties for TLS Key Trustee Server Properties in Cloudera Runtime 7.1.7 Key Trustee Server System Requirements Key-Value Store Indexer Health Tests Key-Value Store Indexer Metrics Key-Value Store Indexer Properties in Cloudera Runtime 7.1.7 Keystores and the Key Management Server KMS ACL Configuration for Hive Known Issues in Cloudera Manager 7.6.5 Knox Gateway Health Tests Knox Gateway Metrics Knox Health Tests Knox IDBroker Health Tests Knox IDBroker Metrics Knox Metrics Knox Properties for TLS Knox Properties in Cloudera Runtime 7.1.7 Kudu Kudu Health Tests Kudu Metrics Kudu Properties in Cloudera Runtime 7.1.7 Kudu Replica Metrics Lifecycle and Security Auditing Lily HBase Indexer Health Tests Lily HBase Indexer Metrics Limitations Limiting replication hosts Linux Control Groups (cgroups) List and Create Keys Listing Repositories Livy for Spark 3 Health Tests Livy for Spark 3 Metrics Livy for Spark 3 Properties in Cloudera Runtime 7.1.7 Livy Health Tests Livy Metrics Livy Properties in Cloudera Runtime 7.1.7 Livy Server for Spark 3 Health Tests Livy Server for Spark 3 Metrics Livy Server Health Tests Livy Server Metrics LLAP Proxy Health Tests LLAP Proxy Metrics Load Balancer Health Tests Load Balancer Metrics Log a Security Support Case Log Details Logs Logs and Events Logs List LOG_MESSAGE Category Maintaining Cloudera Navigator Encrypt Maintenance Mode Managing Alerts Managing Anonymous Usage Data Collection Managing Cloudera Manager Managing Cloudera Manager Server Logs Managing Cloudera Runtime Services Managing Clusters Managing Dashboards Managing Disk Space for Log Files Managing Encryption Keys and Zones Managing HDFS snapshots Managing Hosts Managing Kerberos credentials using Cloudera Manager Managing Key Trustee Server Certificates Managing Key Trustee Server Organizations Managing Licenses Managing Parcels Managing Re-encryption Operations Managing Role Groups Managing Roles Managing snapshot policies Managing Spark Driver Logs Managing Suppressed Validations Managing the Cloudera Manager Agent Logs Managing the Navigator Key HSM Service Manually Configuring TLS Encryption for Cloudera Manager Manually Configuring TLS Encryption on the Agent Listening Port Manually Install Cloudera Manager Agent Packages Manually Install Cloudera Software Packages Manually Redeploying Client Configuration Files Manually Triggering Collection and Transfer of Diagnostic Data to Cloudera Mapping Kerberos Principals to Short Names MapReduce Health Tests MapReduce Metrics Master Health Tests Master Metrics Metric Aggregation Metric Aggregation Metric Expression Functions Metric Expressions Metrics and queries Metrics Reference Migrate Databases from the Embedded Database Server to the External PostgreSQL Database Server Migrate from the Cloudera Manager External PostgreSQL Database Server to a MySQL/Oracle Database Server Migrate the Ranger Admin role instance to a new host Migrate the Ranger KMS db role instance to a new host Migrate the Ranger KMS KTS role instance to a new host Migrating ACLs from Key Trustee KMS to Ranger KMS Migrating Embedded PostgreSQL Database to External PostgreSQL Database Migrating from PostgreSQL Database Server to MySQL/Oracle Database Server Migrating from the Cloudera Manager Embedded PostgreSQL Database Server to an External PostgreSQL Database Migrating Keys from a Java KeyStore to Cloudera Navigator Key Trustee Server Migrating Ranger Key Management Server Role Instances to a New Host Modifying Configuration Properties Using Cloudera Manager Modifying peers Modifying the Health Threshold Monitor Health Tests Monitor Metrics Monitor your Cluster from the SMM UI Monitoring a Cluster Using Cloudera Manager Monitoring Activities Monitoring and Diagnostics Monitoring and Diagnostics Monitoring Clusters Monitoring Hosts Monitoring Impala Queries Monitoring Service Status Monitoring Services Monitoring Spark Applications Monitoring the performance of HDFS replication policies Monitoring the performance of Hive/Impala replication policies Monitoring YARN Applications Moving a Host Between Clusters Moving and Resizing Charts Moving Monitoring Data on an Active Cluster Moving the Cloudera Manager Server to a New Host NameNode Health Tests NameNode Metrics Navigator Audit Server Health Tests Navigator Audit Server Metrics Navigator Encrypt Navigator Encrypt Access Control List Navigator Encrypt Overview Navigator HSM KMS backed by SafeNet Luna HSM Metrics Navigator HSM KMS backed by Thales HSM Metrics Navigator Key HSM Navigator Key Trustee Server Navigator Luna KMS Metastore Health Tests Navigator Luna KMS Metastore Metrics Navigator Luna KMS Proxy Health Tests Navigator Luna KMS Proxy Metrics Navigator Metadata Server Health Tests Navigator Metadata Server Metrics Navigator Thales KMS Metastore Health Tests Navigator Thales KMS Metastore Metrics Navigator Thales KMS Proxy Health Tests Navigator Thales KMS Proxy Metrics Network Interface Metrics Network latency during replication Networking and Security Requirements Networking Considerations for Virtual Private Clusters NFS Gateway Health Tests NFS Gateway Metrics NiFi Registry TLS/SSL Properties NiFi TLS/SSL properties NodeManager Health Tests NodeManager Metrics Obtain and Deploy Keys and Certificates for TLS/SSL Obtaining Time-Series Data Using the API Omid Health Tests Omid Metrics Omid tso server Health Tests Omid tso server Metrics Oozie Oozie Health Tests Oozie Metrics Oozie Properties in Cloudera Runtime 7.1.7 Oozie Server Health Tests Oozie Server Metrics Operating System Requirements Optimizing Performance for HDFS Transparent Encryption Optimizing Performance in Cloudera Runtime Orphaned snapshots Other Tasks and Settings Overriding Configuration Properties Overriding custom keystore alias on a Ranger KMS Server Overview Overview Overview Overview Overview Overview Overview of Parcels Overview Tab Ozone Ozone DataNode Health Tests Ozone DataNode Metrics Ozone Manager Health Tests Ozone Manager Metrics Ozone Metrics Ozone Prometheus Health Tests Ozone Prometheus Metrics Ozone Properties in Cloudera Runtime 7.1.7 Ozone Recon Health Tests Ozone Recon Metrics Parcel Configuration Settings Parcel Life Cycle Parcel Locations Parcels Passive Database Health Tests Passive Database Metrics Passive Key Trustee Server Health Tests Passive Key Trustee Server Metrics Pausing a Cluster in AWS Performance and scalability limitations for HDFS replication policies Performance Considerations Performance Management Performance Trade Offs Performing Maintenance on a Cluster Host Periodic Stacks Collection Phoenix Phoenix Health Tests Phoenix Metrics Phoenix Properties in Cloudera Runtime 7.1.7 Port requirements for Replication Manager on CDP Private Cloud Base Ports Ports Ports Used by Cloudera Manager Ports Used by Cloudera Navigator Key Trustee Server Ports Used by Cloudera Runtime Components Ports Used by DistCp Ports Used by Third-Party Components Predicates Preparing a New Cluster Preparing for Encryption Using Cloudera Navigator Encrypt Prerequisites Prerequisites Prerequisites Prerequisites and Assumptions Prerequisites and exceptions for the example configuration Prerequisites for installing Atlas Prerequisites to configure TLS/SSL for HBase Presentation of Aggregate Data Principal name mapping Privileged commands for Cloudera Manager installation Process Management Processes Production Installation Profiler Admin Agent Health Tests Profiler Admin Agent Metrics Profiler Manager Metrics Profiler Metrics Agent Health Tests Profiler Metrics Agent Metrics Profiler Scheduler Agent Health Tests Profiler Scheduler Agent Metrics Profiler Scheduler Metrics Putting all Hosts in an Upgrade Domain group into Maintenance Mode Query Details Query Processor Health Tests Query Processor Metrics Query Server Health Tests Query Server Metrics Querying metric data Quick Start Deployment for a Streams Cluster Ranger Ranger Admin Health Tests Ranger Admin Metrics Ranger Health Tests Ranger KMS Health Tests Ranger KMS Metrics Ranger KMS Server Health Tests Ranger KMS Server Metrics Ranger KMS Server with KTS Health Tests Ranger KMS Server with KTS Metrics Ranger KMS with Key Trustee Server Health Tests Ranger KMS with Key Trustee Server Metrics Ranger Metrics Ranger Properties in Cloudera Runtime 7.1.7 Ranger Raz Health Tests Ranger Raz Metrics Ranger Raz Server Health Tests Ranger Raz Server Metrics Ranger RMS Health Tests Ranger RMS Metrics Ranger RMS Server Health Tests Ranger RMS Server Metrics Ranger Tagsync Health Tests Ranger Tagsync Metrics Ranger Usersync Health Tests Ranger Usersync Metrics Re-encrypting an EDEK Re-encrypting Encrypted Data Encryption Keys (EDEKs) Read the Events Recommissioning Hosts Recommissioning Role Instances Record User Data Paths Recovering a Key Trustee Server Redaction of Sensitive Information from Diagnostic Bundles Referencing Amazon S3 in URIs Referencing S3 Credentials for YARN, MapReduce, or Spark Clients RegionServer Health Tests RegionServer Metrics Registering Cloudera Navigator Encrypt with Key Trustee Server Release Notes Remove Cloudera Manager, User Data, and Databases Removing a Chart from a Custom Dashboard Removing a Filter Removing a Host From a Cluster Removing an Event Filter Renaming a Cluster Renaming a Service Renew and Redistribute Certificates Renewing a License Replacing Key Trustee Server Certificates Replicating data to Impala clusters Replicating directories with thousands of files and subdirectories Replicating from unsecure to secure clusters Replication Manager Replication Manager in CDP Private Cloud Base Replication Manager log retention Replication of encrypted data Replication of Impala and Hive User Defined Functions (UDFs) Replication of parameters Reports Reports Manager Reports Manager Health Tests Reports Manager Metrics Repository Configuration Files Required Databases Resetting Configuration Properties to the Default Value Resource Management Resource Management Resource Planning for Data at Rest Encryption ResourceManager Health Tests ResourceManager Metrics Resources Restarting a Cloudera Runtime Service Restarting Services and Instances after Configuration Changes Restarting the Cloudera Management Service Restore Key Trustee Server from ktbackup.sh backups Restore Key Trustee Server in package-based installations Restore Key Trustee Server in parcel-based installations Restoring Navigator Key Trustee Server Restoring Snapshots Restoring the Cloudera Manager configuration Results Tab Results Tab Retrieving metric data Review Changes Role Assignments Role Groups Role Instance Reference Role Instances Roll Over an Existing Key Rolling Encryption Keys Rolling Restart Run the Cloudera Manager Server Installer Run the Cloudera Manager Server Installer Running a MapReduce Job Running Diagnostic Commands for Roles Running the Host Inspector Running the Prune Command Using Cloudera Manager Admin Console Running the Prune Command Using the Cloudera Manager API Runtime Cluster Hosts and Role Assignments S3 Connector Properties in Cloudera Runtime 7.1.7 S3 Gateway Health Tests S3 Gateway Metrics S3Guard with Sqoop Sample Custom Alert Script Sample Python Code SAN Certificates Saving a Chart Saving Charts to a New Dashboard Saving Charts to an Existing Dashboard Saving Charts to Dashboards Schema Registry Health Tests Schema Registry Metrics Schema Registry Properties in Cloudera Runtime 7.1.7 Schema Registry Server Health Tests Schema Registry Server Metrics Search Searching for Properties Searching Within the File System SecondaryNameNode Health Tests SecondaryNameNode Metrics Secure Your Cluster Securing database connections with TLS/SSL Securing the Key Management System (KMS) Security considerations Security Management Security Overview Select Services Selecting a Point In Time or a Time Range Selecting Columns to Show in the Activities List Selecting Columns to Show in the Tasks List Sending Diagnostic Data to Cloudera for YARN Applications Sending Usage and Diagnostic Data to Cloudera Sentry Health Tests Sentry Metrics Sentry Server Health Tests Sentry Server Metrics Sentry to Ranger replication Server and Client Configuration Server Metrics Service Dependencies in Cloudera Manager Service Monitor Health Tests Service Monitor Metrics Service Monitor Requirements Service Summary Set Up a Cluster Using the Wizard Set Up a Gateway Host to Restrict Access to the Cluster Set Up a Streaming Cluster Set Up Access to Cloudera EDH (Microsoft Azure Marketplace) Set Up an Environment Set up CipherTrust HSM for Ranger KMS, KTS, and KeyHSM Set up GCP Cloud HSM for Ranger KMS, KTS, and KeyHSM Set up Luna 6 HSM for Ranger KMS, KTS, and KeyHSM Set up Luna 7 HSM for Ranger KMS w/database Set up Luna 7 HSM for Ranger KMS, KTS, and KeyHSM Setting an Advanced Configuration Snippet for a Cloudera Runtime Service Setting an Advanced Configuration Snippet for a Cluster Setting Quotas Setting SELinux Mode Setting the vm.swappiness Linux Kernel Parameter Setting Up a Web Server Setting Up a Web Server Setting Up Data at Rest Encryption for HDFS Setting Up Key Trustee Server High Availability Setup Database Shutting Down and Starting Up the Cluster Snapshots Snapshots history Software Distribution Management Solr Health Tests Solr Metrics Solr Properties in Cloudera Runtime 7.1.7 Solr Replica Metrics Solr Server Health Tests Solr Server Metrics Solr Shard Metrics Solutions to Common Problems Sorting the Activities List Sorting the Tasks List Source data during replication Spark Spark 3 Health Tests Spark 3 Metrics Spark 3 Properties in Cloudera Runtime 7.1.7 Spark Health Tests Spark Metrics Spark Properties in Cloudera Runtime 7.1.7 Specifying hosts to improve Hive replication policy performance Specifying Racks for Hosts Specifying the Diagnostic Data Directory Specifying TLS/SSL Minimum Allowed Version and Ciphers Sqoop 2 Health Tests Sqoop 2 Server Health Tests Sqoop Import into ADLS Sqoop Import into Amazon S3 SQOOP_CLIENT Properties in Cloudera Runtime 7.1.7 SRM Distributed Herder metrics Metrics SRM Driver Health Tests SRM Driver Metrics SRM Service Health Tests SRM Service Metrics Stale Configurations Starting a Cloudera Runtime Service on All Hosts Starting All the Roles on a Host Starting and Stopping Cloudera Management Service Roles Starting the Cloudera Management Service Starting the Embedded PostgreSQL Database Starting, Stopping, and Restarting Cloudera Manager Agents Starting, Stopping, and Restarting Role Instances Starting, Stopping, and Restarting the Cloudera Manager Server Starting, Stopping, Refreshing, and Restarting a Cluster State Management Static Service Pools Status Status Summary Status Summary Step 11: Inspect Cluster Step 1: Configure a Repository for Cloudera Manager Step 1: Identify Roles that Use the Embedded Database Server Step 1: Install Cloudera Manager and CDP Step 1: Welcome (Add Cluster - Installation) Step 1: Welcome (Add Cluster - Installation) Step 2: Cluster Basics Step 2: Cluster Basics Step 2: Install Java Development Kit Step 2: Install JCE policy files for AES-256 encryption Step 2: Migrate Databases from the Embedded Database Server to the External PostgreSQL Database Server Step 3: Create the Kerberos Principal for Cloudera Manager Server Step 3: Install Cloudera Manager Server Step 3: Setup Auto-TLS Step 3: Setup Auto-TLS Step 4. Install and Configure Databases Step 4: Enable Kerberos using the wizard Step 4: Specify Hosts Step 4: Specify Hosts Step 5: Create the HDFS superuser Step 5: Select Repository Step 5: Select Repository Step 5: Set up and configure the Cloudera Manager database Step 6: Get or create a Kerberos principal for each user account Step 6: Install Parcels Step 6: Install Runtime and Other Software Step 6: Select JDK Step 7: Enter Login Credentials Step 7: Prepare the cluster for each user Step 7: Set Up a Cluster Using the Wizard Step 8: Inspect Cluster Step 8: Install Agents Step 8: Verify that Kerberos security is working Step 9: (Optional) Enable authentication for HTTP web consoles for Hadoop roles Step 9: Install Parcels Stop all Services Stopping a Cloudera Runtime Service on All Hosts Stopping All the Roles on a Host Stopping the Cloudera Management Service Stopping the Embedded PostgreSQL Database Storage Container Manager Health Tests Storage Container Manager Metrics Storage Space Planning for Cloudera Manager Streams Messaging Manager Health Tests Streams Messaging Manager Metrics Streams Messaging Manager Properties in Cloudera Runtime 7.1.7 Streams Messaging Manager Rest Admin Server Health Tests Streams Messaging Manager Rest Admin Server Metrics Streams Messaging Manager UI Server Health Tests Streams Messaging Manager UI Server Metrics Streams Replication Manager Health Tests Streams Replication Manager Metrics Streams Replication Manager Properties in Cloudera Runtime 7.1.7 Summary Summary Support matrix for Replication Manager on CDP Private Cloud Base Suppressing a Configuration Validation in Cloudera Manager Suppressing a Health Test Suppressing Configuration and Parameter Validation Warnings Suppressing Configuration Validations Before They Trigger Warnings Suppressing Health Test Results Syntax for scm_prepare_database.sh SYSTEM Category System Requirements for POC Streams Cluster Tablet Server Health Tests Tablet Server Metrics Taking and deleting HDFS snapshots Task Attempts TaskController Error Codes (MRv1) TaskTracker Health Tests TaskTracker Hosts TaskTracker Metrics Telemetry Publisher Health Tests Telemetry Publisher Metrics Terminology Terminology Testing the Installation Testing with Hue Tez Metrics Tez Properties in Cloudera Runtime 7.1.7 The Actions Menu The File Browser The Processes Tab The Task Distribution Chart Third-party filesystems Time Line Time Series Attributes Time Series Entities and their Attributes Time Series Table Metrics Tips and Best Practices for Jobs TLS/SSL certificate requirements and recommendations TLS/SSL client authentication TLS/SSL Issues TLS/SSL settings for Streams Messaging Manager Tracer Health Tests Tracer Metrics Transparent Encryption Recommendations for HBase Transparent Encryption Recommendations for Hive Transparent Encryption Recommendations for Hue Transparent Encryption Recommendations for Impala Transparent Encryption Recommendations for MapReduce and YARN Transparent Encryption Recommendations for Search Transparent Encryption Recommendations for Spark Transparent Encryption Recommendations for Sqoop Trial Installation Triggers Troubleshooting Cluster Configuration and Operation Troubleshooting Installation Problems Troubleshooting Performance of Decommissioning Troubleshooting Security Issues Troubleshooting Security Issues tsquery Language tsquery Syntax Tuning and Troubleshooting Host Decommissioning Tuning HBase Prior to Decommissioning DataNodes Tuning HDFS Prior to Decommissioning DataNodes Tuning JVM Garbage Collection Tutorial: Using Impala, Hive and Hue with Virtual Private Clusters Understanding Keystores and Truststores Understanding Package Management Uninstall Cloudera Manager Agent and Managed Software Uninstall the Cloudera Manager Server Uninstalling a Runtime Component From a Single Host Uninstalling Cloudera Manager and Managed Software Unsuppressing Health Tests Upgrading from a CDP Private Cloud Base Trial to CDP Private Cloud Base Use case 1: Use Cloudera Manager to generate internal CA and corresponding certificates Use case 2: Enabling Auto-TLS with an intermediate CA signed by an existing Root CA Use case 3: Enabling Auto-TLS with Existing Certificates Use Self-Signed Certificates for TLS Use the Cluster Utilization Report to manage resources User Management User Metrics Using a Credential Provider to Secure S3 Credentials Using a custom Kerberos keytab retrieval script Using a load balancer Using a Local Parcel Repository Using an Internally Hosted Remote Parcel Repository Using auth-to-local rules to isolate cluster users Using Context-Sensitive Variables in Charts Using Fast Upload with Amazon S3 Using impala-shell and Hive Using metadata for cluster governance Using Ranger to Provide Authorization in CDP Using snapshots with replication Using Tags in Cloudera Manager Using the Cloudera Manager API Using the Cloudera Manager API for Cluster Automation Using the Cloudera Manager API to backup and restore clusters Using the Cloudera Manager API to Manage and Configure Clusters Using the Cloudera Manager API to Obtain Configuration Files Using the Cloudera Manager API to Set Advanced Configuration Snippets (Safety Valves) Using the Directory Usage Report Using the Ranger Key Management Service Validating Hadoop Key Operations Validating Key HSM Settings Validation of Configuration Properties Verifying Cloudera Navigator Key Trustee Server Operations Version and Download Information View HDFS directory structure of Compute clusters Viewing a Job's Task Attempts Viewing a List of All Suppressed Validations Viewing a List of Suppressed Health Tests Viewing Activity Details in a Report Format Viewing All Hosts Viewing and Debugging Spark Applications Using Logs Viewing and Downloading Stacks Logs Viewing and Editing Host Overrides Viewing and Editing Overridden Configuration Properties Viewing and Reverting Configuration Changes Viewing Audit Events Viewing Charts for Cluster, Service, Role, and Host Instances Viewing Cloudera Manager Agent Logs in the Logs Page Viewing Cloudera Manager Server Logs in the Logs Page Viewing Current Disk Usage by User, Group, or Directory Viewing Events Viewing Health Test Results Viewing Historical Disk Usage by User, Group, or Directory Viewing Host and Service Monitor Data Storage Viewing Host Details Viewing Host Role Assignments Viewing Host Status Viewing Individual Hosts Viewing Jobs Viewing Logs Viewing Parcel Usage Viewing Past Host Inspector Results Viewing Past Status Viewing Past Status Viewing Queries Viewing replication history Viewing replication policies Viewing Role Instance Status Viewing Running and Recent Commands Viewing Running and Recent Commands For a Cluster Viewing Running and Recent Commands for a Service or Role Viewing Service Instance Details Viewing Service Status Viewing the Cloudera Manager Agent Log Viewing the Cloudera Manager Agent Logs Viewing the Cloudera Manager Server Log Viewing the Cloudera Manager Server Log Viewing the Disks Overview Viewing the Distribution of Task Attempts Viewing the Health and Status of a Role Instance Viewing the Hosts in a Cluster Viewing the Jobs in a Pig, Oozie, or Hive Activity Viewing the Maintenance Mode Status of a Cluster Viewing the Maintenance Mode Status of a Cluster Viewing the Status of a Service Instance Viewing the URLs of the Client Configuration Files Virtual Private Clusters and Cloudera SDX Visualizing Spark Applications Using the Web Application UI WebHCat Server Health Tests WebHCat Server Metrics What's New in Cloudera Manager 7.6.5 Write a few Events into the Topic YARN YARN Health Tests YARN Metrics YARN Pool Metrics YARN Pool User Metrics YARN Properties in Cloudera Runtime 7.1.7 YARN Queue Manager Metrics YARN Queue Manager Properties in Cloudera Runtime 7.1.7 YARN Queue Manager Store Health Tests YARN Queue Manager Store Metrics YARN Queue Manager Webapp Health Tests YARN Queue Manager Webapp Metrics YARN Tab YARN, MRv1, and Linux OS Security Zeppelin Health Tests Zeppelin Metrics Zeppelin Properties in Cloudera Runtime 7.1.7 Zeppelin Server Health Tests Zeppelin Server Metrics ZooKeeper ZooKeeper Health Tests ZooKeeper Metrics ZooKeeper Properties in Cloudera Runtime 7.1.7 ZooKeeper Server Health Tests
Schema Registry Properties in Cloudera Runtime 7.1.7
Schema Registry Server🔗
Advanced🔗
Schema Registry Server XML Override🔗
Description
For advanced use only, replace entire XML in the logback configuration file for Schema Registry Server, ignoring all logging configuration.
Related Name
logback_safety_valve
Default Value
API Name
logback_safety_valve
Required
false
Enable auto refresh for metric configurations🔗
Description
When true, Enable Metric Collection and Metric Filter parameters will be set automatically if they're changed. Otherwise, a refresh by hand is required.
Related Name
Default Value
false
API Name
metric_config_auto_refresh
Required
false
Heap Dump Directory🔗
Description
Path to directory where heap dumps are generated when java.lang.OutOfMemoryError error is thrown. This directory is automatically created if it does not exist. If this directory already exists, it will be owned by the current role user with 1777 permissions. Sharing the same directory among multiple roles will cause an ownership race. The heap dump files are created with 600 permissions and are owned by the role user. The amount of free space in this directory should be greater than the maximum Java Process heap size configured for this role.
Related Name
oom_heap_dump_dir
Default Value
/tmp
API Name
oom_heap_dump_dir
Required
false
Dump Heap When Out of Memory🔗
Description
When set, generates a heap dump file when when an out-of-memory error occurs.
Related Name
Default Value
true
API Name
oom_heap_dump_enabled
Required
true
Kill When Out of Memory🔗
Description
When set, a SIGKILL signal is sent to the role process when java.lang.OutOfMemoryError is thrown.
Related Name
Default Value
true
API Name
oom_sigkill_enabled
Required
true
Automatically Restart Process🔗
Description
When set, this role's process is automatically (and transparently) restarted in the event of an unexpected failure. This configuration applies in the time after the Start Wait Timeout period.
Related Name
Default Value
false
API Name
process_auto_restart
Required
true
Enable Metric Collection🔗
Description
Cloudera Manager agent monitors each service and each of its role by publishing metrics to the Cloudera Manager Service Monitor. Setting it to false will stop Cloudera Manager agent from publishing any metric for corresponding service/roles. This is usually helpful for services that generate large amount of metrics which Service Monitor is not able to process.
Related Name
Default Value
true
API Name
process_should_monitor
Required
true
Process Start Retry Attempts🔗
Description
Number of times to try starting a role's process when the process exits before the Start Wait Timeout period. After a process is running beyond the Start Wait Timeout, the retry count is reset. Setting this configuration to zero will prevent restart of the process during the Start Wait Timeout period.
Related Name
Default Value
3
API Name
process_start_retries
Required
false
Process Start Wait Timeout🔗
Description
The time in seconds to wait for a role's process to start successfully on a host. Processes which exit/crash before this time will be restarted until reaching the limit specified by the Start Retry Attempts count parameter. Setting this configuration to zero will turn off this feature.
Related Name
Default Value
20
API Name
process_start_secs
Required
false
Schema Registry Server Advanced Configuration Snippet (Safety Valve) for registry.yaml🔗
Description
For advanced use only. A string to be inserted into registry.yaml for this role only.
Related Name
Default Value
API Name
registry.yaml_role_safety_valve
Required
false
Schema Registry Server Environment Advanced Configuration Snippet (Safety Valve)🔗
Description
For advanced use only, key-value pairs (one on each line) to be inserted into a role's environment. Applies to configurations of this role except client configuration.
Related Name
Default Value
API Name
SCHEMA_REGISTRY_SERVER_role_env_safety_valve
Required
false
Logs🔗
Schema Registry Server Log Directory🔗
Description
The log directory for log files of the role Schema Registry Server.
Related Name
log_dir
Default Value
/var/log/schemaregistry
API Name
log_dir
Required
false
Schema Registry Server Logging Threshold🔗
Description
The minimum log level for Schema Registry Server logs
Related Name
Default Value
INFO
API Name
log_threshold
Required
false
Schema Registry Server Maximum Log File Backups🔗
Description
The maximum number of rolled log files to keep for Schema Registry Server logs. Typically used by log4j or logback.
Related Name
Default Value
10
API Name
max_log_backup_index
Required
false
Schema Registry Server Max Log Size🔗
Description
The maximum size, in megabytes, per log file for Schema Registry Server logs. Typically used by log4j or logback.
Related Name
Default Value
200 MiB
API Name
max_log_size
Required
false
Monitoring🔗
Enable Health Alerts for this Role🔗
Description
When set, Cloudera Manager will send alerts when the health of this role reaches the threshold specified by the EventServer setting eventserver_health_events_alert_threshold
Related Name
Default Value
true
API Name
enable_alerts
Required
false
Enable Configuration Change Alerts🔗
Description
When set, Cloudera Manager will send alerts when this entity's configuration changes.
Related Name
Default Value
false
API Name
enable_config_alerts
Required
false
Log Directory Free Space Monitoring Absolute Thresholds🔗
Description
The health test thresholds for monitoring of free space on the filesystem that contains this role's log directory.
Related Name
Default Value
Warning: 10 GiB, Critical: 5 GiB
API Name
log_directory_free_space_absolute_thresholds
Required
false
Log Directory Free Space Monitoring Percentage Thresholds🔗
Description
The health test thresholds for monitoring of free space on the filesystem that contains this role's log directory. Specified as a percentage of the capacity on that filesystem. This setting is not used if a Log Directory Free Space Monitoring Absolute Thresholds setting is configured.
Related Name
Default Value
Warning: Never, Critical: Never
API Name
log_directory_free_space_percentage_thresholds
Required
false
Metric Filter🔗
Description
Defines a Metric Filter for this role. Cloudera Manager Agents will not send filtered metrics to the Service Monitor. Define the following fields:Health Test Metric Set - Select this parameter to collect only metrics required for health tests.Default Dashboard Metric Set - Select this parameter to collect only metrics required for the default dashboards. For user-defined charts, you must add the metrics you require for the chart using the Custom Metrics parameter. Include/Exclude Custom Metrics - Select Include to specify metrics that should be collected. Select Exclude to specify metrics that should not be collected. Enter the metric names to be included or excluded using the Metric Name parameter.Metric Name - The name of a metric that will be included or excluded during metric collection. If you do not select Health Test Metric Set or Default Dashboard Metric Set , or specify metrics by name, metric filtering will be turned off (this is the default behavior).For example, the following configuration enables the collection of metrics required for Health Tests and the jvm_heap_used_mb
metric:Include only Health Test Metric Set : Selected.Include/Exclude Custom Metrics : Set to Include .Metric Name : jvm_heap_used_mb
You can also view the JSON representation for this parameter by clicking View as JSON . In this example, the JSON looks like this:{
"includeHealthTestMetricSet": true,
"filterType": "whitelist",
"metrics": ["jvm_heap_used_mb"]
}
Related Name
Default Value
API Name
monitoring_metric_filter
Required
false
Swap Memory Usage Rate Thresholds🔗
Description
The health test thresholds on the swap memory usage rate of the process. Specified as the change of the used swap memory during the predefined period.
Related Name
Default Value
Warning: Never, Critical: Never
API Name
process_swap_memory_rate_thresholds
Required
false
Swap Memory Usage Rate Window🔗
Description
The period to review when computing unexpected swap memory usage change of the process.
Related Name
common.process.swap_memory_rate_window
Default Value
5 minute(s)
API Name
process_swap_memory_rate_window
Required
false
Process Swap Memory Thresholds🔗
Description
The health test thresholds on the swap memory usage of the process. This takes precedence over the host level threshold.
Related Name
Default Value
Warning: 200 B, Critical: Never
API Name
process_swap_memory_thresholds
Required
false
Role Triggers🔗
Description
The configured triggers for this role. This is a JSON-formatted list of triggers. These triggers are evaluated as part as the health system. Every trigger expression is parsed, and if the trigger condition is met, the list of actions provided in the trigger expression is executed. Each trigger has the following fields:triggerName
(mandatory) - The name of the trigger. This value must be unique for the specific role. triggerExpression
(mandatory) - A tsquery expression representing the trigger. streamThreshold
(optional) - The maximum number of streams that can satisfy a condition of a trigger before the condition fires. By default set to 0, and any stream returned causes the condition to fire. enabled
(optional) - By default set to 'true'. If set to 'false', the trigger is not evaluated.expressionEditorConfig
(optional) - Metadata for the trigger editor. If present, the trigger should only be edited from the Edit Trigger page; editing the trigger here can lead to inconsistencies. For example, the following JSON formatted trigger configured for a DataNode fires if the DataNode has more than 1500 file descriptors opened:[{"triggerName": "sample-trigger",
"triggerExpression": "IF (SELECT fd_open WHERE roleName=$ROLENAME and last(fd_open) > 1500) DO health:bad",
"streamThreshold": 0, "enabled": "true"}]
See the trigger rules documentation for more details on how to write triggers using tsquery.The JSON format is evolving and may change and, as a result, backward compatibility is not guaranteed between releases.
Related Name
Default Value
[]
API Name
role_triggers
Required
true
File Descriptor Monitoring Thresholds🔗
Description
The health test thresholds of the number of file descriptors used. Specified as a percentage of file descriptor limit.
Related Name
Default Value
Warning: 50.0 %, Critical: 70.0 %
API Name
schema_registry_server_fd_thresholds
Required
false
Schema Registry Server Host Health Test🔗
Description
When computing the overall Schema Registry Server health, consider the host's health.
Related Name
Default Value
true
API Name
schema_registry_server_host_health_enabled
Required
false
Schema Registry Server Process Health Test🔗
Description
Enables the health test that the Schema Registry Server's process state is consistent with the role configuration
Related Name
Default Value
true
API Name
schema_registry_server_scm_health_enabled
Required
false
Unexpected Exits Thresholds🔗
Description
The health test thresholds for unexpected exits encountered within a recent period specified by the unexpected_exits_window configuration for the role.
Related Name
Default Value
Warning: Never, Critical: Any
API Name
unexpected_exits_thresholds
Required
false
Unexpected Exits Monitoring Period🔗
Description
The period to review when computing unexpected exits.
Related Name
Default Value
5 minute(s)
API Name
unexpected_exits_window
Required
false
Other🔗
Schema Registry Admin Port🔗
Description
The admin port for the server.
Related Name
schema.registry.adminPort
Default Value
7789
API Name
schema.registry.adminPort
Required
true
Schema Registry Allowed Resources🔗
Description
Allowed resources for Schema Registry.
Related Name
schema.registry.allowed.resources
Default Value
401.html, back-default.png, favicon.ico
API Name
schema.registry.allowed.resources
Required
false
Schema Version Cache Expiry Interval🔗
Description
Schema version cache expiry interval.
Related Name
schema.registry.cache.expiry.interval
Default Value
3600
API Name
schema.registry.cache.expiry.interval
Required
true
Schema Registry Cache Size🔗
Description
Schema Registry cache size.
Related Name
schema.registry.cache.size
Default Value
1000
API Name
schema.registry.cache.size
Required
true
Password For HTTP Proxy Server Username🔗
Description
Password For HTTP Proxy Server Username.
Related Name
schema.registry.httpProxyPassword
Default Value
API Name
schema.registry.httpProxyPassword
Required
false
HTTP Proxy Server🔗
Description
URL for http proxy server. Please enter it in format protocol_name://host_name:port_number.
Related Name
schema.registry.httpProxyServer
Default Value
API Name
schema.registry.httpProxyServer
Required
false
HTTP Proxy Server Availability🔗
Description
Boolean to set if HTTP Proxy Server is available or not.
Related Name
schema.registry.httpProxyServer.available
Default Value
false
API Name
schema.registry.httpProxyServer.available
Required
false
Username For HTTP Proxy Server🔗
Description
Username for http proxy server.
Related Name
schema.registry.httpProxyUsername
Default Value
API Name
schema.registry.httpProxyUsername
Required
false
Schema Registry Jar Storage Directory Path🔗
Description
Jar storage directory path.
Related Name
schema.registry.jar.storage.directory.path
Default Value
/tmp/schema-registry/local-jars
API Name
schema.registry.jar.storage.directory.path
Required
false
Schema Registry Jar Storage HDFS URL🔗
Description
URL of the directory to be used for storing jars on HDFS when HDFS is not selected as an optional dependency.
Related Name
schema.registry.jar.storage.hdfs.url
Default Value
hdfs://localhost:8020
API Name
schema.registry.jar.storage.hdfs.url
Required
false
Schema Registry Jar Storage Type🔗
Description
Jar storage type for storing jars on the local filesystem or on HDFS. If 'hdfs' is set but HDFS is not selected as an optional dependency, please provide a value for the 'Schema Registry Jar Storage HDFS URL' property.
Related Name
schema.registry.jar.storage.type
Default Value
local
API Name
schema.registry.jar.storage.type
Required
false
Java Home Path Override🔗
Description
Java home path override for Schema Registry.
Related Name
schema.registry.jdk.home
Default Value
API Name
schema.registry.jdk.home
Required
false
Schema Registry Kerberos Name Rules🔗
Description
Kerberos name rules for Schema Registry.
Related Name
schema.registry.kerberos.name.rules
Default Value
RULE:[2:$1@$0]([jt]t@.*EXAMPLE.COM)s/.*/$MAPRED_USER/ RULE:[2:$1@$0]([nd]n@.*EXAMPLE.COM)s/.*/$HDFS_USER/DEFAULT
API Name
schema.registry.kerberos.name.rules
Required
false
Schema Registry Kerberos Non Browser User Agents🔗
Description
Non browser user agents if kerberos is enabled.
Related Name
schema.registry.kerberos.non.browser.user.agents
Default Value
API Name
schema.registry.kerberos.non.browser.user.agents
Required
false
Schema Registry Port🔗
Description
The port on which server accepts connections.
Related Name
schema.registry.port
Default Value
7788
API Name
schema.registry.port
Required
true
Schema Registry Servlet Filter🔗
Description
Schema Registry servlet filter class.
Related Name
schema.registry.servlet.filter
Default Value
com.hortonworks.registries.auth.server.AuthenticationFilter
API Name
schema.registry.servlet.filter
Required
true
Schema Registry Admin Port (SSL)🔗
Description
HTTPS admin port Schema Registry node runs on when SSL is enabled.
Related Name
schema.registry.ssl.adminPort
Default Value
7791
API Name
schema.registry.ssl.adminPort
Required
false
SSL Keystore Type🔗
Description
The keystore type. It is blank by default but required if schema registry's ssl is enabled. e.g. PKCS12 or JKS.
Related Name
schema.registry.ssl.keyStoreType
Default Value
jks
API Name
schema.registry.ssl.keyStoreType
Required
false
Schema Registry Port (SSL)🔗
Description
HTTPS port Schema Registry node runs on when SSL is enabled.
Related Name
schema.registry.ssl.port
Default Value
7790
API Name
schema.registry.ssl.port
Required
false
SSL TrustStore Type🔗
Description
The truststore type. It is blank by default but required if schema registry's ssl is enabled. e.g. PKCS12 or JKS.
Related Name
schema.registry.ssl.trustStoreType
Default Value
jks
API Name
schema.registry.ssl.trustStoreType
Required
false
SSL ValidateCerts🔗
Description
Whether or not to validate TLS certificates before starting. If enabled, it will refuse to start with expired or otherwise invalid certificates.
Related Name
schema.registry.ssl.validateCerts
Default Value
false
API Name
schema.registry.ssl.validateCerts
Required
false
SSL ValidatePeers🔗
Description
Whether or not to validate TLS peer certificates.
Related Name
schema.registry.ssl.validatePeers
Default Value
false
API Name
schema.registry.ssl.validatePeers
Required
false
Schema Registry Query Timeout🔗
Description
Schema Registry query timeout.
Related Name
schema.registry.storage.query.timeout
Default Value
30 second(s)
API Name
schema.registry.storage.query.timeout
Required
true
Schema Registry Token Validity🔗
Description
Kerberos token validity for Schema Registry in ms.
Related Name
schema.registry.token.validity
Default Value
36000
API Name
schema.registry.token.validity
Required
false
Schema Registry Log Max Backup Index🔗
Description
The number of backup files.
Related Name
schema_registry_log_maxbackupindex
Default Value
20
API Name
schema_registry_log_maxbackupindex
Required
false
Schema Registry Log Max File Size🔗
Description
The maximum size of backup file before the log is rotated.
Related Name
schema_registry_log_maxfilesize
Default Value
256MB
API Name
schema_registry_log_maxfilesize
Required
false
Performance🔗
Resource Management🔗
Cgroup CPU Shares🔗
Description
Number of CPU shares to assign to this role. The greater the number of shares, the larger the share of the host's CPUs that will be given to this role when the host experiences CPU contention. Must be between 2 and 262144. Defaults to 1024 for processes not managed by Cloudera Manager.
Related Name
cpu.shares
Default Value
1024
API Name
rm_cpu_shares
Required
true
Custom Control Group Resources (overrides Cgroup settings)🔗
Description
Custom control group resources to assign to this role, which will be enforced by the Linux kernel. These resources should exist on the target hosts, otherwise an error will occur when the process starts. Use the same format as used for arguments to the cgexec command: resource1,resource2:path1 or resource3:path2 For example: 'cpu,memory:my/path blkio:my2/path2' ***These settings override other cgroup settings.***
Related Name
custom.cgroups
Default Value
API Name
rm_custom_resources
Required
false
Cgroup I/O Weight🔗
Description
Weight for the read I/O requests issued by this role. The greater the weight, the higher the priority of the requests when the host experiences I/O contention. Must be between 100 and 1000. Defaults to 1000 for processes not managed by Cloudera Manager.
Related Name
blkio.weight
Default Value
500
API Name
rm_io_weight
Required
true
Cgroup Memory Hard Limit🔗
Description
Hard memory limit to assign to this role, enforced by the Linux kernel. When the limit is reached, the kernel will reclaim pages charged to the process. If reclaiming fails, the kernel may kill the process. Both anonymous as well as page cache pages contribute to the limit. Use a value of -1 to specify no limit. By default processes not managed by Cloudera Manager will have no limit. If the value is -1, Cloudera Manager will not monitor Cgroup memory usage therefore some of the charts will show 'No Data'
Related Name
memory.limit_in_bytes
Default Value
-1 MiB
API Name
rm_memory_hard_limit
Required
true
Cgroup Memory Soft Limit🔗
Description
Soft memory limit to assign to this role, enforced by the Linux kernel. When the limit is reached, the kernel will reclaim pages charged to the process if and only if the host is facing memory pressure. If reclaiming fails, the kernel may kill the process. Both anonymous as well as page cache pages contribute to the limit. Use a value of -1 to specify no limit. By default processes not managed by Cloudera Manager will have no limit. If the value is -1, Cloudera Manager will not monitor Cgroup memory usage therefore some of the charts will show 'No Data'
Related Name
memory.soft_limit_in_bytes
Default Value
-1 MiB
API Name
rm_memory_soft_limit
Required
true
Security🔗
Schema Registry Server TLS/SSL Trust Store File🔗
Description
The location on disk of the trust store, in .jks format, used to confirm the authenticity of TLS/SSL servers that Schema Registry Server might connect to. This trust store must contain the certificate(s) used to sign the service(s) connected to. If this parameter is not provided, the default list of well-known certificate authorities is used instead.
Related Name
schema.registry.ssl.trustStorePath
Default Value
API Name
ssl_client_truststore_location
Required
false
Schema Registry Server TLS/SSL Trust Store Password🔗
Description
The password for the Schema Registry Server TLS/SSL Trust Store File. This password is not required to access the trust store; this field can be left blank. This password provides optional integrity checking of the file. The contents of trust stores are certificates, and certificates are public information.
Related Name
schema.registry.ssl.trustStorePassword
Default Value
API Name
ssl_client_truststore_password
Required
false
Enable TLS/SSL for Schema Registry Server🔗
Description
Encrypt communication between clients and Schema Registry Server using Transport Layer Security (TLS) (formerly known as Secure Socket Layer (SSL)).
Related Name
ssl.enable
Default Value
false
API Name
ssl_enabled
Required
false
Schema Registry Server TLS/SSL Server Keystore File Location🔗
Description
The path to the TLS/SSL keystore file containing the server certificate and private key used for TLS/SSL. Used when Schema Registry Server is acting as a TLS/SSL server. The keystore must be in the format specified in Administration > Settings > Java Keystore Type.
Related Name
schema.registry.ssl.keyStorePath
Default Value
API Name
ssl_server_keystore_location
Required
false
Schema Registry Server TLS/SSL Server Keystore File Password🔗
Description
The password for the Schema Registry Server keystore file.
Related Name
schema.registry.ssl.keyStorePassword
Default Value
API Name
ssl_server_keystore_password
Required
false
Stacks Collection🔗
Stacks Collection Data Retention🔗
Description
The amount of stacks data that is retained. After the retention limit is reached, the oldest data is deleted.
Related Name
stacks_collection_data_retention
Default Value
100 MiB
API Name
stacks_collection_data_retention
Required
false
Stacks Collection Directory🔗
Description
The directory in which stacks logs are placed. If not set, stacks are logged into a stacks
subdirectory of the role's log directory. If this directory already exists, it will be owned by the current role user with 755 permissions. Sharing the same directory among multiple roles will cause an ownership race.
Related Name
stacks_collection_directory
Default Value
API Name
stacks_collection_directory
Required
false
Stacks Collection Enabled🔗
Description
Whether or not periodic stacks collection is enabled.
Related Name
stacks_collection_enabled
Default Value
false
API Name
stacks_collection_enabled
Required
true
Stacks Collection Frequency🔗
Description
The frequency with which stacks are collected.
Related Name
stacks_collection_frequency
Default Value
5.0 second(s)
API Name
stacks_collection_frequency
Required
false
Stacks Collection Method🔗
Description
The method used to collect stacks. The jstack option involves periodically running the jstack command against the role's daemon process. The servlet method is available for those roles that have an HTTP server endpoint exposing the current stacks traces of all threads. When the servlet method is selected, that HTTP endpoint is periodically scraped.
Related Name
stacks_collection_method
Default Value
jstack
API Name
stacks_collection_method
Required
false
Suppressions🔗
Suppress Configuration Validator: CDH Version Validator🔗
Description
Whether to suppress configuration warnings produced by the CDH Version Validator configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_cdh_version_validator
Required
true
Suppress Parameter Validation: Schema Registry Server Log Directory🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Schema Registry Server Log Directory parameter.
Related Name
Default Value
false
API Name
role_config_suppression_log_dir
Required
true
Suppress Parameter Validation: Schema Registry Server XML Override🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Schema Registry Server XML Override parameter.
Related Name
Default Value
false
API Name
role_config_suppression_logback_safety_valve
Required
true
Suppress Parameter Validation: Heap Dump Directory🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Heap Dump Directory parameter.
Related Name
Default Value
false
API Name
role_config_suppression_oom_heap_dump_dir
Required
true
Suppress Parameter Validation: Schema Registry Server Advanced Configuration Snippet (Safety Valve) for registry.yaml🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Schema Registry Server Advanced Configuration Snippet (Safety Valve) for registry.yaml parameter.
Related Name
Default Value
false
API Name
role_config_suppression_registry.yaml_role_safety_valve
Required
true
Suppress Parameter Validation: Custom Control Group Resources (overrides Cgroup settings)🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Custom Control Group Resources (overrides Cgroup settings) parameter.
Related Name
Default Value
false
API Name
role_config_suppression_rm_custom_resources
Required
true
Suppress Parameter Validation: Role Triggers🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Role Triggers parameter.
Related Name
Default Value
false
API Name
role_config_suppression_role_triggers
Required
true
Suppress Parameter Validation: Schema Registry Admin Port🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Schema Registry Admin Port parameter.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.adminport
Required
true
Suppress Parameter Validation: Schema Registry Allowed Resources🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Schema Registry Allowed Resources parameter.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.allowed.resources
Required
true
Suppress Parameter Validation: Password For HTTP Proxy Server Username🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Password For HTTP Proxy Server Username parameter.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.httpproxypassword
Required
true
Suppress Parameter Validation: HTTP Proxy Server🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the HTTP Proxy Server parameter.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.httpproxyserver
Required
true
Suppress Parameter Validation: Username For HTTP Proxy Server🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Username For HTTP Proxy Server parameter.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.httpproxyusername
Required
true
Suppress Parameter Validation: Schema Registry Jar Storage Directory Path🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Schema Registry Jar Storage Directory Path parameter.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.jar.storage.directory.path
Required
true
Suppress Parameter Validation: Schema Registry Jar Storage HDFS URL🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Schema Registry Jar Storage HDFS URL parameter.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.jar.storage.hdfs.url
Required
true
Suppress Parameter Validation: Java Home Path Override🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Java Home Path Override parameter.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.jdk.home
Required
true
Suppress Parameter Validation: Schema Registry Kerberos Name Rules🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Schema Registry Kerberos Name Rules parameter.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.kerberos.name.rules
Required
true
Suppress Parameter Validation: Schema Registry Kerberos Non Browser User Agents🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Schema Registry Kerberos Non Browser User Agents parameter.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.kerberos.non.browser.user.agents
Required
true
Suppress Parameter Validation: Schema Registry Port🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Schema Registry Port parameter.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.port
Required
true
Suppress Parameter Validation: Schema Registry Servlet Filter🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Schema Registry Servlet Filter parameter.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.servlet.filter
Required
true
Suppress Parameter Validation: Schema Registry Admin Port (SSL)🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Schema Registry Admin Port (SSL) parameter.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.ssl.adminport
Required
true
Suppress Parameter Validation: SSL Keystore Type🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the SSL Keystore Type parameter.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.ssl.keystoretype
Required
true
Suppress Parameter Validation: Schema Registry Port (SSL)🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Schema Registry Port (SSL) parameter.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.ssl.port
Required
true
Suppress Parameter Validation: SSL TrustStore Type🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the SSL TrustStore Type parameter.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.ssl.truststoretype
Required
true
Suppress Parameter Validation: SSL ValidateCerts🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the SSL ValidateCerts parameter.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.ssl.validatecerts
Required
true
Suppress Parameter Validation: SSL ValidatePeers🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the SSL ValidatePeers parameter.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.ssl.validatepeers
Required
true
Suppress Parameter Validation: Schema Registry Log Max Backup Index🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Schema Registry Log Max Backup Index parameter.
Related Name
Default Value
false
API Name
role_config_suppression_schema_registry_log_maxbackupindex
Required
true
Suppress Parameter Validation: Schema Registry Log Max File Size🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Schema Registry Log Max File Size parameter.
Related Name
Default Value
false
API Name
role_config_suppression_schema_registry_log_maxfilesize
Required
true
Suppress Parameter Validation: Schema Registry Server Environment Advanced Configuration Snippet (Safety Valve)🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Schema Registry Server Environment Advanced Configuration Snippet (Safety Valve) parameter.
Related Name
Default Value
false
API Name
role_config_suppression_schema_registry_server_role_env_safety_valve
Required
true
Suppress Parameter Validation: Schema Registry Server TLS/SSL Trust Store File🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Schema Registry Server TLS/SSL Trust Store File parameter.
Related Name
Default Value
false
API Name
role_config_suppression_ssl_client_truststore_location
Required
true
Suppress Parameter Validation: Schema Registry Server TLS/SSL Trust Store Password🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Schema Registry Server TLS/SSL Trust Store Password parameter.
Related Name
Default Value
false
API Name
role_config_suppression_ssl_client_truststore_password
Required
true
Suppress Parameter Validation: Schema Registry Server TLS/SSL Server Keystore File Location🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Schema Registry Server TLS/SSL Server Keystore File Location parameter.
Related Name
Default Value
false
API Name
role_config_suppression_ssl_server_keystore_location
Required
true
Suppress Parameter Validation: Schema Registry Server TLS/SSL Server Keystore File Password🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Schema Registry Server TLS/SSL Server Keystore File Password parameter.
Related Name
Default Value
false
API Name
role_config_suppression_ssl_server_keystore_password
Required
true
Suppress Parameter Validation: Stacks Collection Directory🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Stacks Collection Directory parameter.
Related Name
Default Value
false
API Name
role_config_suppression_stacks_collection_directory
Required
true
Suppress Health Test: Audit Pipeline Test🔗
Description
Whether to suppress the results of the Audit Pipeline Test heath test. The results of suppressed health tests are ignored when computing the overall health of the associated host, role or service, so suppressed health tests will not generate alerts.
Related Name
Default Value
false
API Name
role_health_suppression_schemaregistry_schema_registry_server_audit_health
Required
true
Suppress Health Test: File Descriptors🔗
Description
Whether to suppress the results of the File Descriptors heath test. The results of suppressed health tests are ignored when computing the overall health of the associated host, role or service, so suppressed health tests will not generate alerts.
Related Name
Default Value
false
API Name
role_health_suppression_schemaregistry_schema_registry_server_file_descriptor
Required
true
Suppress Health Test: Host Health🔗
Description
Whether to suppress the results of the Host Health heath test. The results of suppressed health tests are ignored when computing the overall health of the associated host, role or service, so suppressed health tests will not generate alerts.
Related Name
Default Value
false
API Name
role_health_suppression_schemaregistry_schema_registry_server_host_health
Required
true
Suppress Health Test: Log Directory Free Space🔗
Description
Whether to suppress the results of the Log Directory Free Space heath test. The results of suppressed health tests are ignored when computing the overall health of the associated host, role or service, so suppressed health tests will not generate alerts.
Related Name
Default Value
false
API Name
role_health_suppression_schemaregistry_schema_registry_server_log_directory_free_space
Required
true
Suppress Health Test: Process Status🔗
Description
Whether to suppress the results of the Process Status heath test. The results of suppressed health tests are ignored when computing the overall health of the associated host, role or service, so suppressed health tests will not generate alerts.
Related Name
Default Value
false
API Name
role_health_suppression_schemaregistry_schema_registry_server_scm_health
Required
true
Suppress Health Test: Swap Memory Usage🔗
Description
Whether to suppress the results of the Swap Memory Usage heath test. The results of suppressed health tests are ignored when computing the overall health of the associated host, role or service, so suppressed health tests will not generate alerts.
Related Name
Default Value
false
API Name
role_health_suppression_schemaregistry_schema_registry_server_swap_memory_usage
Required
true
Suppress Health Test: Swap Memory Usage Rate Beta🔗
Description
Whether to suppress the results of the Swap Memory Usage Rate Beta heath test. The results of suppressed health tests are ignored when computing the overall health of the associated host, role or service, so suppressed health tests will not generate alerts.
Related Name
Default Value
false
API Name
role_health_suppression_schemaregistry_schema_registry_server_swap_memory_usage_rate
Required
true
Suppress Health Test: Unexpected Exits🔗
Description
Whether to suppress the results of the Unexpected Exits heath test. The results of suppressed health tests are ignored when computing the overall health of the associated host, role or service, so suppressed health tests will not generate alerts.
Related Name
Default Value
false
API Name
role_health_suppression_schemaregistry_schema_registry_server_unexpected_exits
Required
true
Service-Wide🔗
Advanced🔗
System Group🔗
Description
The group that this service's processes should run as.
Related Name
Default Value
hadoop
API Name
process_groupname
Required
true
System User🔗
Description
The user that this service's processes should run as.
Related Name
Default Value
schemaregistry
API Name
process_username
Required
true
Schema Registry Service Environment Advanced Configuration Snippet (Safety Valve)🔗
Description
For advanced use only, key-value pairs (one on each line) to be inserted into a role's environment. Applies to configurations of all roles in this service except client configuration.
Related Name
Default Value
API Name
SCHEMAREGISTRY_service_env_safety_valve
Required
false
Database🔗
Schema Registry Database Host🔗
Description
Hostname of the database used by Schema Registry. If the port is non-default for your database type, use host:port notation.
Related Name
schema.registry.storage.connector.host
Default Value
localhost
API Name
database_host
Required
true
Schema Registry Database Name🔗
Description
Name of Schema Registry database.
Related Name
schema.registry.storage.connector.name
Default Value
schemaregistry
API Name
database_name
Required
true
Schema Registry Database User Password🔗
Description
Password for Schema Registry database.
Related Name
schema.registry.storage.connector.password
Default Value
API Name
database_password
Required
true
Schema Registry Database Port🔗
Description
Port for Schema Registry database.
Related Name
schema.registry.storage.connector.port
Default Value
3306
API Name
database_port
Required
true
Schema Registry Database Type🔗
Description
Database type to be used (postgres).
Related Name
schema.registry.storage.connector.type
Default Value
mysql
API Name
database_type
Required
true
Schema Registry Database User🔗
Description
User for Schema Registry database.
Related Name
schema.registry.storage.connector.user
Default Value
schemaregistry
API Name
database_user
Required
true
Monitoring🔗
Enable Service Level Health Alerts🔗
Description
When set, Cloudera Manager will send alerts when the health of this service reaches the threshold specified by the EventServer setting eventserver_health_events_alert_threshold
Related Name
Default Value
true
API Name
enable_alerts
Required
false
Enable Configuration Change Alerts🔗
Description
When set, Cloudera Manager will send alerts when this entity's configuration changes.
Related Name
Default Value
false
API Name
enable_config_alerts
Required
false
Healthy Schema Registry Server Monitoring Thresholds🔗
Description
The health test thresholds of the overall Schema Registry Server health. The check returns "Concerning" health if the percentage of "Healthy" Schema Registry Servers falls below the warning threshold. The check is unhealthy if the total percentage of "Healthy" and "Concerning" Schema Registry Servers falls below the critical threshold.
Related Name
Default Value
Warning: 99.99 %, Critical: 49.99 %
API Name
SCHEMAREGISTRY_SCHEMA_REGISTRY_SERVER_healthy_thresholds
Required
false
Service Triggers🔗
Description
The configured triggers for this service. This is a JSON-formatted list of triggers. These triggers are evaluated as part as the health system. Every trigger expression is parsed, and if the trigger condition is met, the list of actions provided in the trigger expression is executed. Each trigger has the following fields:triggerName
(mandatory) - The name of the trigger. This value must be unique for the specific service. triggerExpression
(mandatory) - A tsquery expression representing the trigger. streamThreshold
(optional) - The maximum number of streams that can satisfy a condition of a trigger before the condition fires. By default set to 0, and any stream returned causes the condition to fire. enabled
(optional) - By default set to 'true'. If set to 'false', the trigger is not evaluated.expressionEditorConfig
(optional) - Metadata for the trigger editor. If present, the trigger should only be edited from the Edit Trigger page; editing the trigger here can lead to inconsistencies. For example, the following JSON formatted trigger fires if there are more than 10 DataNodes with more than 500 file descriptors opened:[{"triggerName": "sample-trigger",
"triggerExpression": "IF (SELECT fd_open WHERE roleType = DataNode and last(fd_open) > 500) DO health:bad",
"streamThreshold": 10, "enabled": "true"}]
See the trigger rules documentation for more details on how to write triggers using tsquery.The JSON format is evolving and may change and, as a result, backward compatibility is not guaranteed between releases.
Related Name
Default Value
[]
API Name
service_triggers
Required
true
Service Monitor Derived Configs Advanced Configuration Snippet (Safety Valve)🔗
Description
For advanced use only, a list of derived configuration properties that will be used by the Service Monitor instead of the default ones.
Related Name
Default Value
API Name
smon_derived_configs_safety_valve
Required
false
Other🔗
Enable Kerberos Authentication🔗
Description
Enables Kerberos authentication for this Schema Registry service.
Related Name
kerberos.auth.enable
Default Value
false
API Name
kerberos.auth.enable
Required
false
Suppressions🔗
Suppress Configuration Validator: CDH Version Validator🔗
Description
Whether to suppress configuration warnings produced by the CDH Version Validator configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_cdh_version_validator
Required
true
Suppress Configuration Validator: Schema Registry Server Log Directory🔗
Description
Whether to suppress configuration warnings produced by the Schema Registry Server Log Directory configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_log_dir
Required
true
Suppress Configuration Validator: Schema Registry Server XML Override🔗
Description
Whether to suppress configuration warnings produced by the Schema Registry Server XML Override configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_logback_safety_valve
Required
true
Suppress Configuration Validator: Heap Dump Directory🔗
Description
Whether to suppress configuration warnings produced by the Heap Dump Directory configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_oom_heap_dump_dir
Required
true
Suppress Configuration Validator: Schema Registry Server Advanced Configuration Snippet (Safety Valve) for registry.yaml🔗
Description
Whether to suppress configuration warnings produced by the Schema Registry Server Advanced Configuration Snippet (Safety Valve) for registry.yaml configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_registry.yaml_role_safety_valve
Required
true
Suppress Configuration Validator: Custom Control Group Resources (overrides Cgroup settings)🔗
Description
Whether to suppress configuration warnings produced by the Custom Control Group Resources (overrides Cgroup settings) configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_rm_custom_resources
Required
true
Suppress Configuration Validator: Role Triggers🔗
Description
Whether to suppress configuration warnings produced by the Role Triggers configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_role_triggers
Required
true
Suppress Configuration Validator: Schema Registry Admin Port🔗
Description
Whether to suppress configuration warnings produced by the Schema Registry Admin Port configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.adminport
Required
true
Suppress Configuration Validator: Schema Registry Allowed Resources🔗
Description
Whether to suppress configuration warnings produced by the Schema Registry Allowed Resources configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.allowed.resources
Required
true
Suppress Configuration Validator: Password For HTTP Proxy Server Username🔗
Description
Whether to suppress configuration warnings produced by the Password For HTTP Proxy Server Username configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.httpproxypassword
Required
true
Suppress Configuration Validator: HTTP Proxy Server🔗
Description
Whether to suppress configuration warnings produced by the HTTP Proxy Server configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.httpproxyserver
Required
true
Suppress Configuration Validator: Username For HTTP Proxy Server🔗
Description
Whether to suppress configuration warnings produced by the Username For HTTP Proxy Server configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.httpproxyusername
Required
true
Suppress Configuration Validator: Schema Registry Jar Storage Directory Path🔗
Description
Whether to suppress configuration warnings produced by the Schema Registry Jar Storage Directory Path configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.jar.storage.directory.path
Required
true
Suppress Configuration Validator: Schema Registry Jar Storage HDFS URL🔗
Description
Whether to suppress configuration warnings produced by the Schema Registry Jar Storage HDFS URL configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.jar.storage.hdfs.url
Required
true
Suppress Configuration Validator: Java Home Path Override🔗
Description
Whether to suppress configuration warnings produced by the Java Home Path Override configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.jdk.home
Required
true
Suppress Configuration Validator: Schema Registry Kerberos Name Rules🔗
Description
Whether to suppress configuration warnings produced by the Schema Registry Kerberos Name Rules configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.kerberos.name.rules
Required
true
Suppress Configuration Validator: Schema Registry Kerberos Non Browser User Agents🔗
Description
Whether to suppress configuration warnings produced by the Schema Registry Kerberos Non Browser User Agents configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.kerberos.non.browser.user.agents
Required
true
Suppress Configuration Validator: Schema Registry Port🔗
Description
Whether to suppress configuration warnings produced by the Schema Registry Port configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.port
Required
true
Suppress Configuration Validator: Schema Registry Servlet Filter🔗
Description
Whether to suppress configuration warnings produced by the Schema Registry Servlet Filter configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.servlet.filter
Required
true
Suppress Configuration Validator: Schema Registry Admin Port (SSL)🔗
Description
Whether to suppress configuration warnings produced by the Schema Registry Admin Port (SSL) configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.ssl.adminport
Required
true
Suppress Configuration Validator: SSL Keystore Type🔗
Description
Whether to suppress configuration warnings produced by the SSL Keystore Type configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.ssl.keystoretype
Required
true
Suppress Configuration Validator: Schema Registry Port (SSL)🔗
Description
Whether to suppress configuration warnings produced by the Schema Registry Port (SSL) configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.ssl.port
Required
true
Suppress Configuration Validator: SSL TrustStore Type🔗
Description
Whether to suppress configuration warnings produced by the SSL TrustStore Type configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.ssl.truststoretype
Required
true
Suppress Configuration Validator: SSL ValidateCerts🔗
Description
Whether to suppress configuration warnings produced by the SSL ValidateCerts configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.ssl.validatecerts
Required
true
Suppress Configuration Validator: SSL ValidatePeers🔗
Description
Whether to suppress configuration warnings produced by the SSL ValidatePeers configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_schema.registry.ssl.validatepeers
Required
true
Suppress Configuration Validator: Schema Registry Log Max Backup Index🔗
Description
Whether to suppress configuration warnings produced by the Schema Registry Log Max Backup Index configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_schema_registry_log_maxbackupindex
Required
true
Suppress Configuration Validator: Schema Registry Log Max File Size🔗
Description
Whether to suppress configuration warnings produced by the Schema Registry Log Max File Size configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_schema_registry_log_maxfilesize
Required
true
Suppress Configuration Validator: Schema Registry Server Environment Advanced Configuration Snippet (Safety Valve)🔗
Description
Whether to suppress configuration warnings produced by the Schema Registry Server Environment Advanced Configuration Snippet (Safety Valve) configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_schema_registry_server_role_env_safety_valve
Required
true
Suppress Configuration Validator: Schema Registry Server TLS/SSL Trust Store File🔗
Description
Whether to suppress configuration warnings produced by the Schema Registry Server TLS/SSL Trust Store File configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_ssl_client_truststore_location
Required
true
Suppress Configuration Validator: Schema Registry Server TLS/SSL Trust Store Password🔗
Description
Whether to suppress configuration warnings produced by the Schema Registry Server TLS/SSL Trust Store Password configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_ssl_client_truststore_password
Required
true
Suppress Configuration Validator: Schema Registry Server TLS/SSL Server Keystore File Location🔗
Description
Whether to suppress configuration warnings produced by the Schema Registry Server TLS/SSL Server Keystore File Location configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_ssl_server_keystore_location
Required
true
Suppress Configuration Validator: Schema Registry Server TLS/SSL Server Keystore File Password🔗
Description
Whether to suppress configuration warnings produced by the Schema Registry Server TLS/SSL Server Keystore File Password configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_ssl_server_keystore_password
Required
true
Suppress Configuration Validator: Stacks Collection Directory🔗
Description
Whether to suppress configuration warnings produced by the Stacks Collection Directory configuration validator.
Related Name
Default Value
false
API Name
role_config_suppression_stacks_collection_directory
Required
true
Suppress Parameter Validation: Schema Registry Database Host🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Schema Registry Database Host parameter.
Related Name
Default Value
false
API Name
service_config_suppression_database_host
Required
true
Suppress Parameter Validation: Schema Registry Database Name🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Schema Registry Database Name parameter.
Related Name
Default Value
false
API Name
service_config_suppression_database_name
Required
true
Suppress Parameter Validation: Schema Registry Database User Password🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Schema Registry Database User Password parameter.
Related Name
Default Value
false
API Name
service_config_suppression_database_password
Required
true
Suppress Parameter Validation: Schema Registry Database Port🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Schema Registry Database Port parameter.
Related Name
Default Value
false
API Name
service_config_suppression_database_port
Required
true
Suppress Parameter Validation: Schema Registry Database User🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Schema Registry Database User parameter.
Related Name
Default Value
false
API Name
service_config_suppression_database_user
Required
true
Suppress Parameter Validation: System Group🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the System Group parameter.
Related Name
Default Value
false
API Name
service_config_suppression_process_groupname
Required
true
Suppress Parameter Validation: System User🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the System User parameter.
Related Name
Default Value
false
API Name
service_config_suppression_process_username
Required
true
Suppress Configuration Validator: Schema Registry Server Count Validator🔗
Description
Whether to suppress configuration warnings produced by the Schema Registry Server Count Validator configuration validator.
Related Name
Default Value
false
API Name
service_config_suppression_schema_registry_server_count_validator
Required
true
Suppress Parameter Validation: Schema Registry Service Environment Advanced Configuration Snippet (Safety Valve)🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Schema Registry Service Environment Advanced Configuration Snippet (Safety Valve) parameter.
Related Name
Default Value
false
API Name
service_config_suppression_schemaregistry_service_env_safety_valve
Required
true
Suppress Parameter Validation: Service Triggers🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Service Triggers parameter.
Related Name
Default Value
false
API Name
service_config_suppression_service_triggers
Required
true
Suppress Parameter Validation: Service Monitor Derived Configs Advanced Configuration Snippet (Safety Valve)🔗
Description
Whether to suppress configuration warnings produced by the built-in parameter validation for the Service Monitor Derived Configs Advanced Configuration Snippet (Safety Valve) parameter.
Related Name
Default Value
false
API Name
service_config_suppression_smon_derived_configs_safety_valve
Required
true
Suppress Health Test: Schema Registry Server Health🔗
Description
Whether to suppress the results of the Schema Registry Server Health heath test. The results of suppressed health tests are ignored when computing the overall health of the associated host, role or service, so suppressed health tests will not generate alerts.
Related Name
Default Value
false
API Name
service_health_suppression_schemaregistry_schema_registry_server_healthy
Required
true