Using SASL SSL
Perform the following steps to set up SASL SSL security for PDI to connect to the Kafka broker:
On the Setup tab, select the Direct connection and use
${KAFKA_KERBEROS_SSL_URL}
as the URL.On the Options tab, enter the options and values listed in the following table:
OptionValuecompression.type
none
security.protocol
SASL_SSL
sasl.mechanism
PLAIN
sasl.kerberos.service.name
${KERBEROS_KAFKA_SERVICE_NAME}
sasl.jaas.config
${SASL_JAAS_CONFIG}
ssl.truststore.location
$[Path to Trust store]
ssl.truststore.password
$[Password]
ssl.keystore.location
$[Path to Key store]
ssl.keystore.password
$[ Key store password]
ssl.key.password
$[ Key password]
ssl.protocol
TLS 1.2
Click OK
For more information on Kafka Kerberos connectivity, see https://docs.confluent.io/platform/current/kafka/authentication_sasl/authentication_sasl_gssapi.html
Last updated
Was this helpful?