GSSAPI

The SASL mechanism Kafka uses for Kerberos logins.

Each broker and client has a Kerberos principal, such as kafka/host@REALM, and a keytab file holding its key. A ticket from the Kerberos server proves the identity, so no password crosses the network.

Related terms

Certification courses