Configuring NiFi Authentication and Proxying with Apache Knox
Also available as:
PDF

Configuring the Knox Admin UI

Before you access Knox SSO or create topologies, you must make several edits to the Knox Configs in Ambari.

  1. Navigate to Advaned knoxsso-topology and, in the KNOXSSO service definition, edit the Knox SSO token time-to-live value. For example, for a 10 hour time-to-live:
    <param>
       <name>knoxsso.token.ttl</name>
       <value>36000000</value>
    </param>
    
  2. Update the whitelist redirect regex property with a regex value that represents the host or domain in which the NiFi host is running. For example:
    <param>
       <name>knoxsso.redirect.whitelist.regex</name>
       <value>^https?:\/\/(hdf-test\.field\.hortonworks\.com|localhost|127\.0\.0\.1|0:0:0:0:0:0:0:1|::1):[0-9].*$</value>
    </param>