Reply
New Contributor
Posts: 6
Registered: ‎07-09-2018

Admission control: placement rule based on LDAP group

Hi all,

 

I'm trying to implement admission control in my Impala cluster. Cluster use OpenLDAP for authentication and Sentry for authorization. I'm able to grant roles to LDAP groups as follows: "grant role dba to group `gn:proj:admin`;"

 

Now I would like to assign users to admission control resource pools based on their LDAP group. I see there are "Use the pool root.[primary group]" and "Use the pool root.[secondary group]." However, I'm not able to create resource pools named "gn:proj:admin".

 

It seems like I'm making some conceptual mistake here and this is either not possible or should be done in some other way. Could you please share any guidelines on this? 

 

Just it case, it's CDH 5.14.

 

Thanks in advance,

Rodion

Announcements