| <!DOCTYPE html> |
| <html lang="en"> |
| <head> |
| <meta charset="UTF-8" /> |
| <meta name="viewport" content="width=device-width, initial-scale=1.0"> |
| <meta name="description" content="Apache Druid"> |
| <meta name="keywords" content="druid,kafka,database,analytics,streaming,real-time,real time,apache,open source"> |
| <meta name="author" content="Apache Software Foundation"> |
| |
| <title>Druid | Configuring Apache Druid (incubating) to use Kerberized Apache Hadoop as Deep Storage</title> |
| |
| <link rel="alternate" type="application/atom+xml" href="/feed"> |
| <link rel="shortcut icon" href="/img/favicon.png"> |
| |
| <link rel="stylesheet" href="https://use.fontawesome.com/releases/v5.7.2/css/all.css" integrity="sha384-fnmOCqbTlWIlj8LyTjo7mOUStjsKC4pOpQbqyi7RrhN7udi9RwhKkMHpvLbHG9Sr" crossorigin="anonymous"> |
| |
| <link href='//fonts.googleapis.com/css?family=Open+Sans+Condensed:300,700,300italic|Open+Sans:300italic,400italic,600italic,400,300,600,700' rel='stylesheet' type='text/css'> |
| |
| <link rel="stylesheet" href="/css/bootstrap-pure.css?v=1.1"> |
| <link rel="stylesheet" href="/css/base.css?v=1.1"> |
| <link rel="stylesheet" href="/css/header.css?v=1.1"> |
| <link rel="stylesheet" href="/css/footer.css?v=1.1"> |
| <link rel="stylesheet" href="/css/syntax.css?v=1.1"> |
| <link rel="stylesheet" href="/css/docs.css?v=1.1"> |
| |
| <script> |
| (function() { |
| var cx = '000162378814775985090:molvbm0vggm'; |
| var gcse = document.createElement('script'); |
| gcse.type = 'text/javascript'; |
| gcse.async = true; |
| gcse.src = (document.location.protocol == 'https:' ? 'https:' : 'http:') + |
| '//cse.google.com/cse.js?cx=' + cx; |
| var s = document.getElementsByTagName('script')[0]; |
| s.parentNode.insertBefore(gcse, s); |
| })(); |
| </script> |
| |
| |
| </head> |
| |
| <body> |
| <!-- Start page_header include --> |
| <script src="//ajax.googleapis.com/ajax/libs/jquery/2.2.4/jquery.min.js"></script> |
| |
| <div class="top-navigator"> |
| <div class="container"> |
| <div class="left-cont"> |
| <a class="logo" href="/"><span class="druid-logo"></span></a> |
| </div> |
| <div class="right-cont"> |
| <ul class="links"> |
| <li class=""><a href="/technology">Technology</a></li> |
| <li class=""><a href="/use-cases">Use Cases</a></li> |
| <li class=""><a href="/druid-powered">Powered By</a></li> |
| <li class=""><a href="/docs/latest/design/">Docs</a></li> |
| <li class=""><a href="/community/">Community</a></li> |
| <li class="header-dropdown"> |
| <a>Apache</a> |
| <div class="header-dropdown-menu"> |
| <a href="https://www.apache.org/" target="_blank">Foundation</a> |
| <a href="https://www.apache.org/events/current-event" target="_blank">Events</a> |
| <a href="https://www.apache.org/licenses/" target="_blank">License</a> |
| <a href="https://www.apache.org/foundation/thanks.html" target="_blank">Thanks</a> |
| <a href="https://www.apache.org/security/" target="_blank">Security</a> |
| <a href="https://www.apache.org/foundation/sponsorship.html" target="_blank">Sponsorship</a> |
| </div> |
| </li> |
| <li class=" button-link"><a href="/downloads.html">Download</a></li> |
| </ul> |
| </div> |
| </div> |
| <div class="action-button menu-icon"> |
| <span class="fa fa-bars"></span> MENU |
| </div> |
| <div class="action-button menu-icon-close"> |
| <span class="fa fa-times"></span> MENU |
| </div> |
| </div> |
| |
| <script type="text/javascript"> |
| var $menu = $('.right-cont'); |
| var $menuIcon = $('.menu-icon'); |
| var $menuIconClose = $('.menu-icon-close'); |
| |
| function showMenu() { |
| $menu.fadeIn(100); |
| $menuIcon.fadeOut(100); |
| $menuIconClose.fadeIn(100); |
| } |
| |
| $menuIcon.click(showMenu); |
| |
| function hideMenu() { |
| $menu.fadeOut(100); |
| $menuIconClose.fadeOut(100); |
| $menuIcon.fadeIn(100); |
| } |
| |
| $menuIconClose.click(hideMenu); |
| |
| $(window).resize(function() { |
| if ($(window).width() >= 840) { |
| $menu.fadeIn(100); |
| $menuIcon.fadeOut(100); |
| $menuIconClose.fadeOut(100); |
| } |
| else { |
| $menu.fadeOut(100); |
| $menuIcon.fadeIn(100); |
| $menuIconClose.fadeOut(100); |
| } |
| }); |
| </script> |
| |
| <!-- Stop page_header include --> |
| |
| |
| <div class="container doc-container"> |
| |
| |
| |
| |
| <p> Looking for the <a href="/docs/0.17.1/">latest stable documentation</a>?</p> |
| |
| |
| <div class="row"> |
| <div class="col-md-9 doc-content"> |
| <p> |
| <a class="btn btn-default btn-xs visible-xs-inline-block visible-sm-inline-block" href="#toc">Table of Contents</a> |
| </p> |
| <!-- |
| ~ Licensed to the Apache Software Foundation (ASF) under one |
| ~ or more contributor license agreements. See the NOTICE file |
| ~ distributed with this work for additional information |
| ~ regarding copyright ownership. The ASF licenses this file |
| ~ to you under the Apache License, Version 2.0 (the |
| ~ "License"); you may not use this file except in compliance |
| ~ with the License. You may obtain a copy of the License at |
| ~ |
| ~ http://www.apache.org/licenses/LICENSE-2.0 |
| ~ |
| ~ Unless required by applicable law or agreed to in writing, |
| ~ software distributed under the License is distributed on an |
| ~ "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY |
| ~ KIND, either express or implied. See the License for the |
| ~ specific language governing permissions and limitations |
| ~ under the License. |
| --> |
| |
| <h1 id="configuring-druid-to-use-a-kerberized-hadoop-as-deep-storage">Configuring Druid to use a Kerberized Hadoop as Deep Storage</h1> |
| |
| <h2 id="hadoop-setup">Hadoop Setup</h2> |
| |
| <p>Following are the configurations files required to be copied over to Druid conf folders:</p> |
| |
| <ol> |
| <li>For HDFS as a deep storage, hdfs-site.xml, core-site.xml</li> |
| <li>For ingestion, mapred-site.xml, yarn-site.xml</li> |
| </ol> |
| |
| <h3 id="hdfs-folders-and-permissions">HDFS Folders and permissions</h3> |
| |
| <ol> |
| <li>Choose any folder name for the druid deep storage, for example 'druid'</li> |
| <li><p>Create the folder in hdfs under the required parent folder. For example, |
| <code>hdfs dfs -mkdir /druid</code> |
| OR |
| <code>hdfs dfs -mkdir /apps/druid</code></p></li> |
| <li><p>Give druid processes appropriate permissions for the druid processes to access this folder. This would ensure that druid is able to create necessary folders like data and indexing_log in HDFS. |
| For example, if druid processes run as user 'root', then</p> |
| |
| <p><code>hdfs dfs -chown root:root /apps/druid</code></p> |
| |
| <p>OR</p> |
| |
| <p><code>hdfs dfs -chmod 777 /apps/druid</code></p></li> |
| </ol> |
| |
| <p>Druid creates necessary sub-folders to store data and index under this newly created folder.</p> |
| |
| <h2 id="druid-setup">Druid Setup</h2> |
| |
| <p>Edit common.runtime.properties at conf/druid/_common/common.runtime.properties to include the HDFS properties. Folders used for the location are same as the ones used for example above.</p> |
| |
| <h3 id="common_runtime_properties">common_runtime_properties</h3> |
| <div class="highlight"><pre><code class="language-properties" data-lang="properties"><span></span><span class="c"># Deep storage</span> |
| <span class="c">#</span> |
| <span class="c"># For HDFS:</span> |
| <span class="na"> druid.storage.type</span><span class="o">=</span><span class="s">hdfs</span> |
| <span class="na"> druid.storage.storageDirectory</span><span class="o">=</span><span class="s">/druid/segments</span> |
| <span class="c"># OR</span> |
| <span class="c"># druid.storage.storageDirectory=/apps/druid/segments</span> |
| |
| <span class="c">#</span> |
| <span class="c"># Indexing service logs</span> |
| <span class="c">#</span> |
| |
| <span class="c"># For HDFS:</span> |
| <span class="na">druid.indexer.logs.type</span><span class="o">=</span><span class="s">hdfs</span> |
| <span class="na">druid.indexer.logs.directory</span><span class="o">=</span><span class="s">/druid/indexing-logs</span> |
| <span class="c"># OR</span> |
| <span class="c"># druid.storage.storageDirectory=/apps/druid/indexing-logs</span> |
| </code></pre></div> |
| <p>Note: Comment out Local storage and S3 Storage parameters in the file</p> |
| |
| <p>Also include hdfs-storage core extension to conf/druid/_common/common.runtime.</p> |
| <div class="highlight"><pre><code class="language-properties" data-lang="properties"><span></span><span class="c">#</span> |
| <span class="c"># Extensions</span> |
| <span class="c">#</span> |
| |
| <span class="na">druid.extensions.directory</span><span class="o">=</span><span class="s">dist/druid/extensions</span> |
| <span class="na">druid.extensions.hadoopDependenciesDir</span><span class="o">=</span><span class="s">dist/druid/hadoop-dependencies</span> |
| <span class="na">druid.extensions.loadList</span><span class="o">=</span><span class="s">["druid-parser-route", "mysql-metadata-storage", "druid-hdfs-storage", "druid-kerberos"]</span> |
| </code></pre></div> |
| <h3 id="hadoop-jars">Hadoop Jars</h3> |
| |
| <p>Ensure that Druid has necessary jars to support the Hadoop version.</p> |
| |
| <p>Find the hadoop version using command, <code>hadoop version</code> </p> |
| |
| <p>In case there are other softwares used with hadoop, like WanDisco, ensure that |
| 1. the necessary libraries are available |
| 2. add the requisite extensions to <code>druid.extensions.loadlist</code> in <code>conf/druid/_common/common.runtime.properties</code></p> |
| |
| <h3 id="kerberos-setup">Kerberos setup</h3> |
| |
| <p>Create a headless keytab which would have access to the druid data and index.</p> |
| |
| <p>Edit conf/druid/_common/common.runtime.properties and add the following properties:</p> |
| <div class="highlight"><pre><code class="language-properties" data-lang="properties"><span></span><span class="err">druid.hadoop.security.kerberos.principal</span> |
| <span class="err">druid.hadoop.security.kerberos.keytab</span> |
| </code></pre></div> |
| <p>For example</p> |
| <div class="highlight"><pre><code class="language-properties" data-lang="properties"><span></span><span class="na">druid.hadoop.security.kerberos.principal</span><span class="o">=</span><span class="s">hdfs-test@EXAMPLE.IO</span> |
| <span class="na">druid.hadoop.security.kerberos.keytab</span><span class="o">=</span><span class="s">/etc/security/keytabs/hdfs.headless.keytab</span> |
| </code></pre></div> |
| <h3 id="restart-druid-services">Restart Druid Services</h3> |
| |
| <p>With the above changes, restart Druid. This would ensure that Druid works with Kerberized Hadoop</p> |
| |
| </div> |
| <div class="col-md-3"> |
| <div class="searchbox"> |
| <gcse:searchbox-only></gcse:searchbox-only> |
| </div> |
| <div id="toc" class="nav toc hidden-print"> |
| </div> |
| </div> |
| </div> |
| </div> |
| |
| <!-- Start page_footer include --> |
| <footer class="druid-footer"> |
| <div class="container"> |
| <div class="text-center"> |
| <p> |
| <a href="/technology">Technology</a> ·  |
| <a href="/use-cases">Use Cases</a> ·  |
| <a href="/druid-powered">Powered by Druid</a> ·  |
| <a href="/docs/latest">Docs</a> ·  |
| <a href="/community/">Community</a> ·  |
| <a href="/downloads.html">Download</a> ·  |
| <a href="/faq">FAQ</a> |
| </p> |
| </div> |
| <div class="text-center"> |
| <a title="Join the user group" href="https://groups.google.com/forum/#!forum/druid-user" target="_blank"><span class="fa fa-comments"></span></a> ·  |
| <a title="Follow Druid" href="https://twitter.com/druidio" target="_blank"><span class="fab fa-twitter"></span></a> ·  |
| <a title="GitHub" href="https://github.com/apache/druid" target="_blank"><span class="fab fa-github"></span></a> |
| </div> |
| <div class="text-center license"> |
| Copyright © 2020 <a href="https://www.apache.org/" target="_blank">Apache Software Foundation</a>.<br> |
| Except where otherwise noted, licensed under <a rel="license" href="http://creativecommons.org/licenses/by-sa/4.0/">CC BY-SA 4.0</a>.<br> |
| Apache Druid, Druid, and the Druid logo are either registered trademarks or trademarks of The Apache Software Foundation in the United States and other countries. |
| </div> |
| </div> |
| </footer> |
| |
| <script async src="https://www.googletagmanager.com/gtag/js?id=UA-131010415-1"></script> |
| <script> |
| window.dataLayer = window.dataLayer || []; |
| function gtag(){dataLayer.push(arguments);} |
| gtag('js', new Date()); |
| gtag('config', 'UA-131010415-1'); |
| </script> |
| <script> |
| function trackDownload(type, url) { |
| ga('send', 'event', 'download', type, url); |
| } |
| </script> |
| <script src="//code.jquery.com/jquery.min.js"></script> |
| <script src="//maxcdn.bootstrapcdn.com/bootstrap/3.2.0/js/bootstrap.min.js"></script> |
| <script src="/assets/js/druid.js"></script> |
| <!-- stop page_footer include --> |
| |
| |
| <script> |
| $(function() { |
| $(".toc").load("/docs/0.15.1-incubating/toc.html"); |
| |
| // There is no way to tell when .gsc-input will be async loaded into the page so just try to set a placeholder until it works |
| var tries = 0; |
| var timer = setInterval(function() { |
| tries++; |
| if (tries > 300) clearInterval(timer); |
| var searchInput = $('input.gsc-input'); |
| if (searchInput.length) { |
| searchInput.attr('placeholder', 'Search'); |
| clearInterval(timer); |
| } |
| }, 100); |
| }); |
| </script> |
| </body> |
| </html> |