GoogleApi.Dataproc.V1.Model.KerberosConfig (google_api_dataproc v0.48.0) View Source

Specifies Kerberos related configuration.

Attributes

  • crossRealmTrustAdminServer (type: String.t, default: nil) - Optional. The admin server (IP or hostname) for the remote trusted realm in a cross realm trust relationship.
  • crossRealmTrustKdc (type: String.t, default: nil) - Optional. The KDC (IP or hostname) for the remote trusted realm in a cross realm trust relationship.
  • crossRealmTrustRealm (type: String.t, default: nil) - Optional. The remote realm the Dataproc on-cluster KDC will trust, should the user enable cross realm trust.
  • crossRealmTrustSharedPasswordUri (type: String.t, default: nil) - Optional. The Cloud Storage URI of a KMS encrypted file containing the shared password between the on-cluster Kerberos realm and the remote trusted realm, in a cross realm trust relationship.
  • enableKerberos (type: boolean(), default: nil) - Optional. Flag to indicate whether to Kerberize the cluster (default: false). Set this field to true to enable Kerberos on a cluster.
  • kdcDbKeyUri (type: String.t, default: nil) - Optional. The Cloud Storage URI of a KMS encrypted file containing the master key of the KDC database.
  • keyPasswordUri (type: String.t, default: nil) - Optional. The Cloud Storage URI of a KMS encrypted file containing the password to the user provided key. For the self-signed certificate, this password is generated by Dataproc.
  • keystorePasswordUri (type: String.t, default: nil) - Optional. The Cloud Storage URI of a KMS encrypted file containing the password to the user provided keystore. For the self-signed certificate, this password is generated by Dataproc.
  • keystoreUri (type: String.t, default: nil) - Optional. The Cloud Storage URI of the keystore file used for SSL encryption. If not provided, Dataproc will provide a self-signed certificate.
  • kmsKeyUri (type: String.t, default: nil) - Optional. The uri of the KMS key used to encrypt various sensitive files.
  • realm (type: String.t, default: nil) - Optional. The name of the on-cluster Kerberos realm. If not specified, the uppercased domain of hostnames will be the realm.
  • rootPrincipalPasswordUri (type: String.t, default: nil) - Optional. The Cloud Storage URI of a KMS encrypted file containing the root principal password.
  • tgtLifetimeHours (type: integer(), default: nil) - Optional. The lifetime of the ticket granting ticket, in hours. If not specified, or user specifies 0, then default value 10 will be used.
  • truststorePasswordUri (type: String.t, default: nil) - Optional. The Cloud Storage URI of a KMS encrypted file containing the password to the user provided truststore. For the self-signed certificate, this password is generated by Dataproc.
  • truststoreUri (type: String.t, default: nil) - Optional. The Cloud Storage URI of the truststore file used for SSL encryption. If not provided, Dataproc will provide a self-signed certificate.

Link to this section Summary

Functions

Unwrap a decoded JSON object into its complex fields.

Link to this section Types

Specs

t() :: %GoogleApi.Dataproc.V1.Model.KerberosConfig{
  crossRealmTrustAdminServer: String.t() | nil,
  crossRealmTrustKdc: String.t() | nil,
  crossRealmTrustRealm: String.t() | nil,
  crossRealmTrustSharedPasswordUri: String.t() | nil,
  enableKerberos: boolean() | nil,
  kdcDbKeyUri: String.t() | nil,
  keyPasswordUri: String.t() | nil,
  keystorePasswordUri: String.t() | nil,
  keystoreUri: String.t() | nil,
  kmsKeyUri: String.t() | nil,
  realm: String.t() | nil,
  rootPrincipalPasswordUri: String.t() | nil,
  tgtLifetimeHours: integer() | nil,
  truststorePasswordUri: String.t() | nil,
  truststoreUri: String.t() | nil
}

Link to this section Functions

Specs

decode(struct(), keyword()) :: struct()

Unwrap a decoded JSON object into its complex fields.