几次调用后,带有Kerberos的PyHive引发身份验证错误

时间:2018-12-04 17:18:12

标签: python hive kerberos pyhive

我正在尝试使用 Python(PyHive Lib)连接到 Hive 读取一些数据,然后将其进一步连接到Hive Flask 在仪表板上显示。

对于蜂巢的几次调用,一切都很好,但是此后不久,我就收到了以下错误消息。

Traceback (most recent call last):
  File "libs/hive.py", line 63, in <module>
    cur = h.connect().cursor()
  File "libs/hive.py", line 45, in connect
    kerberos_service_name='hive')
  File "/home1/igns/git/emsr/.venv/lib/python2.7/site-packages/pyhive/hive.py", line 94, in connect
    return Connection(*args, **kwargs)
  File "/home1/igns/git/emsr/.venv/lib/python2.7/site-packages/pyhive/hive.py", line 192, in __init__
    self._transport.open()
  File "/home1/igns/git/emsr/.venv/lib/python2.7/site-packages/thrift_sasl/__init__.py", line 79, in open
    message=("Could not start SASL: %s" % self.sasl.getError()))
thrift.transport.TTransport.TTransportException: Could not start SASL: Error in sasl_client_start (-1) SASL(-1): generic failure: GSSAPI Error: Unspecified GSS failure.  Minor code may provide more information (No Kerberos credentials available (default cache: FILE:/tmp/krb5cc_cdc995595290_51CD7j))

以下是我的代码

from pyhive import hive
class Hive(object):
    def connect(self):
        return hive.connect(host='hive.hadoop-prod.abc.com',
                            port=10000,
                            database='temp',
                            username='gaurang.shah',
                            auth='KERBEROS',
                            kerberos_service_name='hive')


if __name__ == '__main__':

    h = Hive()
    cur = h.connect().cursor()
    cur.execute("select * from temp.migration limit 1")
    res = cur.fetchall()
    print res

调用脚本

source .venv/bin/activate
for i in {1..50}
do
    python get_hive_data.py
    sleep 300
done

观察 当它工作时,当我执行 klist 时,我可以在服务主体中看到 hive ,但是,当我看到上述错误消息时却没有。

Klist工作正常

Ticket cache: FILE:/tmp/krb5cc_cdc995595290_XyMnhu
Default principal: gaurang.shah@ABC.COM

Valid starting       Expires              Service principal
12/04/2018 14:37:28  12/05/2018 00:37:28  krbtgt/ABC.COM@ABC.COM
    renew until 12/05/2018 14:37:24
12/04/2018 14:39:06  12/05/2018 00:37:28  hive/hive_server.ABC.COM@ABC.COM
    renew until 12/05/2018 14:37:24

Klist不起作用时

Ticket cache: FILE:/tmp/krb5cc_cdc995595290_XyMnhu
Default principal: gaurang.shah@ABC.COM

Valid starting       Expires              Service principal
12/04/2018 14:37:28  12/05/2018 00:37:28  krbtgt/ABC.COM@ABC.COM
    renew until 12/05/2018 14:37:24

更新

因此,我认为这不是在某些电话会议之后,而是在某些时间之后。 (我想一个小时)。我将睡眠时间更改为 3600秒,在刚打完电话后,我开始出现错误。

这很奇怪,hive/hive_server.ABC.COM@ABC.COM的票证有效期为 7天

1 个答案:

答案 0 :(得分:0)

我知道这是旧帖子。但是,如果每次通话都建立新的连接,则应该解决此问题。

from pyhive import hive
class Hive(object):
    def connect(self):
        return hive.connect(host='hive.hadoop-prod.abc.com',
                            port=10000,
                            database='temp',
                            username='gaurang.shah',
                            auth='KERBEROS',
                            kerberos_service_name='hive')


if __name__ == '__main__':
    def newConnect(query):
       h = Hive()
       cur = h.connect().cursor()
       cur.execute(query)
       res = cur.fetchall()
       return res

    myConnectionAndResults = newConnect("select * from temp.migration limit 1")
    print myConnectionAndResults