Authenticating Cloudera AI Inference service

Cloudera AI Inference service secures all incoming requests to application and model endpoints using Cloudera Workload Authentication. Users and client applications must authenticate using one of the supported token- or key-based mechanisms before gaining access to HTTP endpoints.

Supported authentication methods

  • CDP token: Cloudera AI Inference service uses a CDP_TOKEN obtained from the User Management Service (UMS) to authenticate users and clients that interact with all HTTP endpoints exposed by the service workload.

  • Knox API Keys: It enables long-lived connectivity to model endpoints. To use Knox API keys, administrators must configure the Knox service within the Data Lake to accept and process key-based authentication.