问题描述关键字

o.a.z.client.ZooKeeperSaslClient : An error: (java.security.PrivilegedActionException: javax.security.sasl.SaslException: GSS initiate failed [Caused by GSSException: No valid credentials provided (Mechanism level: Server not found in Kerberos database (7) - UNKNOWN_SERVER)]) occurred when evaluating Zookeeper Quorum Member’s received SASL token. This may be caused by Java’s being unable to resolve the Zookeeper Quorum Member’s hostname correctly. You may want to try to adding ‘-Dsun.net.spi.nameservice.provider.1=dns,sun’ to your client’s JVMFLAGS environment. Zookeeper Client will go to AUTH_FAILED state.

AuthFailed for XX路径

问题背景

同一台应用中存在kafka、zookeeper;生产环境 kafka为sasl登录连接、zookeeper为ssl连接。导致应用启动报上面的错误,提示zookeeper参数同sasl进行登录,但是咨询zookeeper集群提供者,只需要配置ssl的环境变量设置,且没有权限控制。

问题解决

-Dzookeeper.sasl.client=false
增加环境变量设置,取消 zookeeper sasl登录。

Logo

为开发者提供学习成长、分享交流、生态实践、资源工具等服务,帮助开发者快速成长。

更多推荐