Impala Kill Actions
Configure TLS Cipher Suites for Impala Kill Actions
For SSL-enabled CDP clusters, configure the Impala daemon to support the TLS cipher suites required by Pulse. Without compatible cipher suites, the Impala Kill Query action might fail with the following error:
remote error: tls: handshake failure
Configure TLS cipher suites
- In Cloudera Manager, go to the Impala service configuration.
- Search for Impala Daemon Command Line Argument Advanced Configuration Snippet (Safety Valve).
- Add the following configuration:
--ssl_cipher_list=ALL:!aNULL:!eNULL
This configuration enables all available cipher suites except anonymous authentication (aNULL) and non-encrypted (eNULL) cipher suites.
- Save the configuration.
- Restart the Impala services that have stale configurations.
- Run the Impala Kill Query action again.
The Impala Kill Query action should complete successfully.

Have a suggestion?