Apache Impala connection

To access your data in Apache Impala, create a connection asset for it.

Apache Impala provides high-performance, low-latency SQL queries on data that is stored in popular Apache Hadoop file formats.

Supported versions

Apache Impala 4.0.

Prerequisites for Kerberos authentication

If you plan to use Kerberos authentication, complete the following requirements:

Create a connection to Apache Impala

To create the connection asset, you need these connection details:

  • Database (optional): If you do not enter a database name, you must enter the catalog name, schema name, and the table name in the properties for SQL queries.
  • Hostname or IP address
  • Port number
  • Username and password

Authentication method

Select the security mechanism to use to authenticate the user:

  • Username and password or Kerberos credentials
    Available Kerberos selections depend on whether you select Personal or Shared credentials.

  • LDAP
    Use an LDAP security mechanism for external authentication.

    Note:

    SPSS Modeler supports only the Username and password authentication method.

Credentials

The credentials setting determines the available authentication methods.
If you select Shared (default), you can use either username and password authentication or Kerberos authentication (without SSO). For more information, see Prerequisites for Kerberos authentication. For Kerberos, you need the following connection details:

  • Service principal name (SPN) that is configured for the data source
  • User principal name to connect to the Kerberized data source
  • The keytab file for the user principal name that is used to authenticate to the Key Distribution Center (KDC)

If you select Personal, you can enter your username and password for the server manually, use secrets from a vault, or use Kerberos authentication. For more information, see Prerequisites for Kerberos authentication. You have two choices for Kerberos:

  • Kerberos (without SSO). For Kerberos without SSO, you need the following connection details:
    • Service principal name (SPN) that is configured for the data source
    • User principal name to connect to the Kerberized data source
    • The keytab file for the user principal name that is used to authenticate to the Key Distribution Center (KDC)
  • Kerberos SSO. Select Kerberos SSO and enter the Service principal name (SPN) that is configured for the data source.

Certificates

  • Port is SSL-enabled: Enable this option if the port you have chosen is configured to accept SSL connections.

If the Port is SSL-enabled option is enabled, fill in the following fields:

  • SSL certificate: Enter the SSL certificate of the host to be trusted
  • Hostname in SSL certificate: The hostname in SubjectAlternativeName or Common Name (CN) part of the SSL certificate
  • Validate the SSL certificate: Enable this option to validate that the SSL certificate returned by the host is trusted.

For Credentials and Certificates, you can use secrets if a vault is configured for the platform and the service supports vaults. For information, see Using secrets from vaults in connections.

Federal Information Processing Standards (FIPS) compliance

This connection is FIPS-compliant and can be used on a FIPS-enabled cluster.

Apache Impala setup

Apache Impala installation

Restriction

You can use this connection only for source data. You cannot write to data or export data with this connection.

Running SQL statements

To ensure that your SQL statements run correctly, refer to the Impala SQL Language Reference for the correct syntax.

Learn more