Configuring Cloudera Data Explorer (Hue) as a TLS/SSL client
Data Explorer acts as a TLS/SSL client when communicating with other services, such as core Hadoop, HBase, Oozie, and cloud providers like Amazon S3 or Azure.
To act as a TLS/SSL client, Data Explorer must authenticate HDFS, MapReduce, YARN daemons, the HBase Thrift server, and so on. To do this, Data Explorer needs to have the certificate chains of these components' hosts in the Data Explorer trust store.
The Data Explorer truststore is a single PEM (Privacy Enhanced Mail) file that contains the certificate authority (CA) root certificate and all intermediate certificates to authenticate the certificate installed on each TLS/SSL-enabled server. These servers host the services with which Data Explorer communicates.
