View Source GoogleApi.Dataproc.V1.Model.KerberosConfig (google_api_dataproc v0.54.0)
Specifies Kerberos related configuration.
Attributes
-
crossRealmTrustAdminServer
(type:String.t
, default:nil
) - Optional. The admin server (IP or hostname) for the remote trusted realm in a cross realm trust relationship. -
crossRealmTrustKdc
(type:String.t
, default:nil
) - Optional. The KDC (IP or hostname) for the remote trusted realm in a cross realm trust relationship. -
crossRealmTrustRealm
(type:String.t
, default:nil
) - Optional. The remote realm the Dataproc on-cluster KDC will trust, should the user enable cross realm trust. -
crossRealmTrustSharedPasswordUri
(type:String.t
, default:nil
) - Optional. The Cloud Storage URI of a KMS encrypted file containing the shared password between the on-cluster Kerberos realm and the remote trusted realm, in a cross realm trust relationship. -
enableKerberos
(type:boolean()
, default:nil
) - Optional. Flag to indicate whether to Kerberize the cluster (default: false). Set this field to true to enable Kerberos on a cluster. -
kdcDbKeyUri
(type:String.t
, default:nil
) - Optional. The Cloud Storage URI of a KMS encrypted file containing the master key of the KDC database. -
keyPasswordUri
(type:String.t
, default:nil
) - Optional. The Cloud Storage URI of a KMS encrypted file containing the password to the user provided key. For the self-signed certificate, this password is generated by Dataproc. -
keystorePasswordUri
(type:String.t
, default:nil
) - Optional. The Cloud Storage URI of a KMS encrypted file containing the password to the user provided keystore. For the self-signed certificate, this password is generated by Dataproc. -
keystoreUri
(type:String.t
, default:nil
) - Optional. The Cloud Storage URI of the keystore file used for SSL encryption. If not provided, Dataproc will provide a self-signed certificate. -
kmsKeyUri
(type:String.t
, default:nil
) - Optional. The URI of the KMS key used to encrypt sensitive files. -
realm
(type:String.t
, default:nil
) - Optional. The name of the on-cluster Kerberos realm. If not specified, the uppercased domain of hostnames will be the realm. -
rootPrincipalPasswordUri
(type:String.t
, default:nil
) - Optional. The Cloud Storage URI of a KMS encrypted file containing the root principal password. -
tgtLifetimeHours
(type:integer()
, default:nil
) - Optional. The lifetime of the ticket granting ticket, in hours. If not specified, or user specifies 0, then default value 10 will be used. -
truststorePasswordUri
(type:String.t
, default:nil
) - Optional. The Cloud Storage URI of a KMS encrypted file containing the password to the user provided truststore. For the self-signed certificate, this password is generated by Dataproc. -
truststoreUri
(type:String.t
, default:nil
) - Optional. The Cloud Storage URI of the truststore file used for SSL encryption. If not provided, Dataproc will provide a self-signed certificate.
Summary
Functions
Unwrap a decoded JSON object into its complex fields.
Types
@type t() :: %GoogleApi.Dataproc.V1.Model.KerberosConfig{ crossRealmTrustAdminServer: String.t() | nil, crossRealmTrustKdc: String.t() | nil, crossRealmTrustRealm: String.t() | nil, crossRealmTrustSharedPasswordUri: String.t() | nil, enableKerberos: boolean() | nil, kdcDbKeyUri: String.t() | nil, keyPasswordUri: String.t() | nil, keystorePasswordUri: String.t() | nil, keystoreUri: String.t() | nil, kmsKeyUri: String.t() | nil, realm: String.t() | nil, rootPrincipalPasswordUri: String.t() | nil, tgtLifetimeHours: integer() | nil, truststorePasswordUri: String.t() | nil, truststoreUri: String.t() | nil }
Functions
Unwrap a decoded JSON object into its complex fields.