Enable authorization for additional HDFS web UIs
You can enforce authorization for the following HDFS web UI servlets, which may
contain sensitive data: /jmx, /stack,
/conf, and /metrics. When you enforce authorization
for the servlets, only the users listed in the dfs.cluster.administrators
property can access them.
/jmx and /metrics servlets and uses the
HTTP user as well as the Service Monitor Kerberos Principal to
access them. Make sure to add both users to dfs.cluster.administrators,
as mentioned in Enable authorization for HDFS web UIs.- In the , go to .
-
Navigate to the Configurations tab and search for the
following property:
HDFS Service Advanced Configuration Snippet (Safety Valve) for hdfs-site.xml. -
Add the
hadoop.security.instrumentation.requires.adminproperty and set its value totrue. - Save the configuration.
- Restart all stale HDFS services.
