Authentication and Access Control
Authentication
YI-MapReduce supports the Kerberos security protocol, uses LDAP as the account management system through the synchronization of IAM accounts, and performs security authentication of account information through the Kerberos service.
For a detailed introduction to the principles of Kerberos security authentication and the authentication mechanism.
Access Control
YI-MapReduce provides a role-based access control model.
Role-Based Access Control
Built on a unified authentication system for users and roles, YI-MapReduce adheres to the account/role RBAC (Role-Based Access Control) model. This model enables permission management through roles and batch authorization management for users. It offers single sign-on capabilities, unifying the management and authentication of system users and component users.