google_api_dataproc v0.35.0 GoogleApi.Dataproc.V1.Model.KerberosConfig View Source
Specifies Kerberos related configuration.
Attributes
-
crossRealmTrustAdminServer
(type:String.t
, default:nil
) - Optional. The admin server (IP or hostname) for the remote trusted realm in a cross realm trust relationship. -
crossRealmTrustKdc
(type:String.t
, default:nil
) - Optional. The KDC (IP or hostname) for the remote trusted realm in a cross realm trust relationship. -
crossRealmTrustRealm
(type:String.t
, default:nil
) - Optional. The remote realm the Dataproc on-cluster KDC will trust, should the user enable cross realm trust. -
crossRealmTrustSharedPasswordUri
(type:String.t
, default:nil
) - Optional. The Cloud Storage URI of a KMS encrypted file containing the shared password between the on-cluster Kerberos realm and the remote trusted realm, in a cross realm trust relationship. -
enableKerberos
(type:boolean()
, default:nil
) - Optional. Flag to indicate whether to Kerberize the cluster (default: false). Set this field to true to enable Kerberos on a cluster. -
kdcDbKeyUri
(type:String.t
, default:nil
) - Optional. The Cloud Storage URI of a KMS encrypted file containing the master key of the KDC database. -
keyPasswordUri
(type:String.t
, default:nil
) - Optional. The Cloud Storage URI of a KMS encrypted file containing the password to the user provided key. For the self-signed certificate, this password is generated by Dataproc. -
keystorePasswordUri
(type:String.t
, default:nil
) - Optional. The Cloud Storage URI of a KMS encrypted file containing the password to the user provided keystore. For the self-signed certificate, this password is generated by Dataproc. -
keystoreUri
(type:String.t
, default:nil
) - Optional. The Cloud Storage URI of the keystore file used for SSL encryption. If not provided, Dataproc will provide a self-signed certificate. -
kmsKeyUri
(type:String.t
, default:nil
) - Required. The uri of the KMS key used to encrypt various sensitive files. -
realm
(type:String.t
, default:nil
) - Optional. The name of the on-cluster Kerberos realm. If not specified, the uppercased domain of hostnames will be the realm. -
rootPrincipalPasswordUri
(type:String.t
, default:nil
) - Required. The Cloud Storage URI of a KMS encrypted file containing the root principal password. -
tgtLifetimeHours
(type:integer()
, default:nil
) - Optional. The lifetime of the ticket granting ticket, in hours. If not specified, or user specifies 0, then default value 10 will be used. -
truststorePasswordUri
(type:String.t
, default:nil
) - Optional. The Cloud Storage URI of a KMS encrypted file containing the password to the user provided truststore. For the self-signed certificate, this password is generated by Dataproc. -
truststoreUri
(type:String.t
, default:nil
) - Optional. The Cloud Storage URI of the truststore file used for SSL encryption. If not provided, Dataproc will provide a self-signed certificate.
Link to this section Summary
Functions
Unwrap a decoded JSON object into its complex fields.
Link to this section Types
Specs
t() :: %GoogleApi.Dataproc.V1.Model.KerberosConfig{ crossRealmTrustAdminServer: String.t(), crossRealmTrustKdc: String.t(), crossRealmTrustRealm: String.t(), crossRealmTrustSharedPasswordUri: String.t(), enableKerberos: boolean(), kdcDbKeyUri: String.t(), keyPasswordUri: String.t(), keystorePasswordUri: String.t(), keystoreUri: String.t(), kmsKeyUri: String.t(), realm: String.t(), rootPrincipalPasswordUri: String.t(), tgtLifetimeHours: integer(), truststorePasswordUri: String.t(), truststoreUri: String.t() }
Link to this section Functions
Specs
Unwrap a decoded JSON object into its complex fields.