Configuring the Knox gateway-site.xml

Configure the Knox per-user token limit in Cloudera Manager for Data Sharing. Knox and Ranger Admin permissions are required to create CLIENT_ID and CLIENT_SECRET.

The CLIENT_ID and CLIENT_SECRET is required for creating Data Shares to authorize your external clients.

  • The Cloudera on cloud user must be configured as both Knox and Ranger Admin to perform the tasks required to configure Knox parameters.
  • Knox topologies are automatically deployed. Editing the token lifetime (KNOXTOKEN:knox.token.ttl) and the token allowance per user (KNOXTOKEN:knox.token.limit.per.user) is applicable to all topologies, but can be overridden by individual topology settings.
  1. Set the Knox token limit parameter:
  2. Cloudera Manager > Clusters > Knox > Configuration.
  3. Search for gateway.knox.token.limit.per.user, then set the value of the parameter.
  4. Click Save Changes and refresh the configuration as needed.