My Oracle Support Banner

Instructions to Enable/Disable AD Kerberos on Oracle Big Data Appliance with Mammoth V4.2 and Higher (Doc ID 2029378.1)

Last updated on OCTOBER 16, 2023

Applies to:

Big Data Appliance Integrated Software - Version 4.2.0 and later
Linux x86-64

Purpose

The document will provide steps and prerequisites for enabling Active Directory (AD) Kerberos on Oracle Big Data Appliance (BDA) with Mammoth V4.2 software when AD Kerberos has not been installed during an original BDA V4.2 installation.  Steps for disabling AD Kerberos are also provided.

Note: See the Known Issues section for a discussion on the recommendation to use MIT Kerberos with a AD cross-realm trust.

Scope

 This document will be used by Oracle ACS, Oracle Support, and System Administrators for the Oracle Big Data Appliance.

Details

To view full details, sign in with your My Oracle Support account.

Don't have a My Oracle Support account? Click to get started!


In this Document
Purpose
Scope
Details
 Known Issues when Enabling AD Kerberos
 Recommendations for Sentry Installation/Configuration
 Recommendations for network encryption Installation/Configuration
 Prerequisites
 Initial
 Ensure that neither Kerberos nor Sentry are installed
 If Impala is installed
 Access
 Verify the Certificate
 Verify LDAP
 Centrify
 Passwords
 General
 Enabling AD Kerberos
 Enabling AD Kerberos with network encryption
 What If an Error Occurs During the Installation?
 Post Installation Validations
 Post Installation Steps for Clusters with Oracle Big Data Discovery (BDD) Setup
 Post Installation Steps for the HBase Service
 Known Issues after enabling AD Kerberos
 Disabling AD Kerberos
 Known Issues when Disabling AD Kerberos
 Steps to Disable AD Kerberos
 Steps to Take After Disabling Kerberos
References

My Oracle Support provides customers with access to over a million knowledge articles and a vibrant support community of peers and Oracle experts.