Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Comment: Removed identity-assertion provider from examples

...

Code Block
languagexml
<gateway>
    <provider>
        <role>authentication</role>
        <name>ShiroProvider</name>
        <enabled>true</enabled>
        <param name="sessionTimeout" value="30"/>
        <param name="main.ldapRealm" value="org.apache.hadoop.gateway.shirorealm.KnoxLdapRealm"/>
        <param name="main.ldapContextFactory" value="org.apache.hadoop.gateway.shirorealm.KnoxLdapContextFactory"/>
        <param name="main.ldapRealm.contextFactory" value="$ldapContextFactory"/>
        <param name="main.ldapRealm.userDnTemplate" value="uid={0},ou=people,dc=hadoop,dc=apache,dc=org"/>
        <param name="main.ldapRealm.contextFactory.url" value="ldap://localhost:33389"/>
        <param name="main.ldapRealm.contextFactory.authenticationMechanism" value="simple"/>
        <param name="urls./**" value="authcBasic"/>
    </provider>
    <provider>
        <role>identity-assertion</role>
        <name>Default</name>
        <enabled>true</enabled>
    </provider>
</gateway>


Create a Simple Descriptor

...

Code Block
languagexml
<gateway>
    <provider>
        <role>authentication</role>
        <name>ShiroProvider</name>
        <enabled>true</enabled>
        <param name="sessionTimeout" value="30"/>
        <param name="main.ldapRealm" value="org.apache.hadoop.gateway.shirorealm.KnoxLdapRealm"/>
        <param name="main.ldapContextFactory" value="org.apache.hadoop.gateway.shirorealm.KnoxLdapContextFactory"/>
        <param name="main.ldapRealm.contextFactory" value="$ldapContextFactory"/>
        <param name="main.ldapRealm.userDnTemplate" value="uid={0},ou=people,dc=hadoop,dc=apache,dc=org"/>
        <param name="main.ldapRealm.contextFactory.url" value="ldap://localhost:33389"/>
        <param name="main.ldapRealm.contextFactory.authenticationMechanism" value="simple"/>
        <param name="urls./**" value="authcBasic"/>
    </provider>
    <provider>
        <role>identity-assertion</role>
        <name>Default</name>
        <enabled>true</enabled>
    </provider>
    <provider>
        <role>hostmap</role>
        <name>static</name>
        <enabled>true</enabled>
        <param name="localhost" value="sandbox,sandbox.hortonworks.com"/>
    </provider>
</gateway>

...