Configure for KMS
Hadoop KMS is a key management system that enables encrypted transport to and from the Hadoop cluster. This section describes how to configure the Designer Cloud Powered by Trifacta platform for integration with KMS.
Note
The Designer Cloud Powered by Trifacta platform supports encryption at rest only through the KMS solution provided with the Hadoop distribution. Generic encryption at rest is not supported.
Note
If KMS is enabled on the cluster, you must configure KMS for the Designer Cloud Powered by Trifacta platform regardless of other security features enabled on the cluster.
For more information on KMS, see https://hadoop.apache.org/docs/stable/hadoop-kms/index.html.
Note
The required configuration for integrating with each Hadoop distribution may vary. Please be sure to review the details.
Prerequisites
You have installed the Alteryx software. See Install.
You have performed the basic configuration steps for Hadoop. See Configure for Hadoop.
You have enabled any required secure authentication services.
Configure by Distribution Type
Warning
KMS is a cluster-wide configuration. If you are enabling Kerberos, secure impersonation, or encryption at rest on the cluster, you must perform the KMS site configuration changes in the pages for your specific Hadoop distribution.
Cloudera/Sentry: See Configure for KMS for Sentry.