Reply
New Contributor
Posts: 2
Registered: ‎10-13-2017

HUE with openLDAP, SENTRY enabled (OpenLdap installed on Secondary namenode)

Hi,

 

CDH 5.9

 

I have installed openldap on the secondary namenode. I have enabled LDAP on HUE service. I'm able to sync LDAP users and groups to hue. I have also enabled sentry for hue. But, in the WebUI, i'm not able to see add role for any of the databases.

 

If I enable Sentry for Impala and try to create role in the query editor it says the user doesnot have permissions.

Posts: 642
Topics: 3
Kudos: 105
Solutions: 67
Registered: ‎08-16-2016

Re: HUE with openLDAP, SENTRY enabled (OpenLdap installed on Secondary namenode)

What user do you have set as the Sentry 'god'?

sentry.service.admin.group

A user in this list or in a group in the list will be the only one that is able to create the initial roles until some delegation is granted.
New Contributor
Posts: 2
Registered: ‎10-13-2017

Re: HUE with openLDAP, SENTRY enabled (OpenLdap installed on Secondary namenode)

Hi,

 

I have added the group to the sentry admin group. I have logged in with the user which is part of the group. I'm able to see the permissions for the database, but, not able to see the add role and not able to add any permissions.

Announcements