<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>question Re: ranger  usersync connect to ldap failed in Support Questions</title>
    <link>https://community.cloudera.com/t5/Support-Questions/ranger-usersync-connect-to-ldap-failed/m-p/163444#M125818</link>
    <description>&lt;P&gt;&lt;A rel="user" href="https://community.cloudera.com/users/140/nsabharwal.html" nodeid="140"&gt;@Neeraj Sabharwal&lt;/A&gt; I've fixed by myself. by setting SYNC_LDAP_USER_SEARCH_FILTER to "uid=*"&lt;/P&gt;</description>
    <pubDate>Wed, 02 Mar 2016 17:25:06 GMT</pubDate>
    <dc:creator>bigdatacn</dc:creator>
    <dc:date>2016-03-02T17:25:06Z</dc:date>
    <item>
      <title>ranger  usersync connect to ldap failed</title>
      <link>https://community.cloudera.com/t5/Support-Questions/ranger-usersync-connect-to-ldap-failed/m-p/163435#M125809</link>
      <description>&lt;P&gt;Summary: Our LDAP ssl crt is signed-certification. &lt;/P&gt;&lt;PRE&gt;29 Feb 2016 09:08:06 ERROR PasswordValidator [Thread-43] - Response [FAILED: unable to validate due to error javax.net.ssl.SSLHandshakeException: Remote host closed connection during handshake] for user: null
javax.net.ssl.SSLHandshakeException: Remote host closed connection during handshake
at sun.security.ssl.SSLSocketImpl.readRecord(SSLSocketImpl.java:946)
at sun.security.ssl.SSLSocketImpl.performInitialHandshake(SSLSocketImpl.java:1312)
at sun.security.ssl.SSLSocketImpl.readDataRecord(SSLSocketImpl.java:882)
at sun.security.ssl.AppInputStream.read(AppInputStream.java:102)
at sun.nio.cs.StreamDecoder.readBytes(StreamDecoder.java:283)
at sun.nio.cs.StreamDecoder.implRead(StreamDecoder.java:325)
at sun.nio.cs.StreamDecoder.read(StreamDecoder.java:177)
at java.io.InputStreamReader.read(InputStreamReader.java:184)
at java.io.BufferedReader.fill(BufferedReader.java:154)
at java.io.BufferedReader.readLine(BufferedReader.java:317)
at java.io.BufferedReader.readLine(BufferedReader.java:382)
at com.xasecure.authentication.PasswordValidator.run(PasswordValidator.java:58)
at java.lang.Thread.run(Thread.java:745)
Caused by: java.io.EOFException: SSL peer shut down incorrectly
at sun.security.ssl.InputRecord.read(InputRecord.java:482)
at sun.security.ssl.SSLSocketImpl.readRecord(SSLSocketImpl.java:927)
... 12 more
29 Feb 2016 09:09:06 ERROR PasswordValidator [Thread-44] - Response [FAILED: unable to validate due to error javax.net.ssl.SSLHandshakeException: Remote host closed connection during handshake] for user: null
javax.net.ssl.SSLHandshakeException: Remote host closed connection during handshake
at sun.security.ssl.SSLSocketImpl.readRecord(SSLSocketImpl.java:946)
at sun.security.ssl.SSLSocketImpl.performInitialHandshake(SSLSocketImpl.java:1312)
at sun.security.ssl.SSLSocketImpl.readDataRecord(SSLSocketImpl.java:882)
at sun.security.ssl.AppInputStream.read(AppInputStream.java:102)
at sun.nio.cs.StreamDecoder.readBytes(StreamDecoder.java:283)
at sun.nio.cs.StreamDecoder.implRead(StreamDecoder.java:325)
at sun.nio.cs.StreamDecoder.read(StreamDecoder.java:177)
at java.io.InputStreamReader.read(InputStreamReader.java:184)
at java.io.BufferedReader.fill(BufferedReader.java:154)
at java.io.BufferedReader.readLine(BufferedReader.java:317)
at java.io.BufferedReader.readLine(BufferedReader.java:382)
at com.xasecure.authentication.PasswordValidator.run(PasswordValidator.java:58)
at java.lang.Thread.run(Thread.java:745)
Caused by: java.io.EOFException: SSL peer shut down incorrectly
at sun.security.ssl.InputRecord.read(InputRecord.java:482)
at sun.security.ssl.SSLSocketImpl.readRecord(SSLSocketImpl.java:927)
... 12 more&lt;/PRE&gt;</description>
      <pubDate>Mon, 29 Feb 2016 17:10:45 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/ranger-usersync-connect-to-ldap-failed/m-p/163435#M125809</guid>
      <dc:creator>bigdatacn</dc:creator>
      <dc:date>2016-02-29T17:10:45Z</dc:date>
    </item>
    <item>
      <title>Re: ranger  usersync connect to ldap failed</title>
      <link>https://community.cloudera.com/t5/Support-Questions/ranger-usersync-connect-to-ldap-failed/m-p/163436#M125810</link>
      <description>&lt;A rel="user" href="https://community.cloudera.com/users/2361/w15409999.html" nodeid="2361"&gt;@henryon wen&lt;/A&gt;&lt;P&gt;Ambari is doing a service check to ensure that the UserSync process is up and running and&lt;STRONG&gt; it can be safely ignored.&lt;/STRONG&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 29 Feb 2016 17:48:03 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/ranger-usersync-connect-to-ldap-failed/m-p/163436#M125810</guid>
      <dc:creator>nsabharwal</dc:creator>
      <dc:date>2016-02-29T17:48:03Z</dc:date>
    </item>
    <item>
      <title>Re: ranger  usersync connect to ldap failed</title>
      <link>https://community.cloudera.com/t5/Support-Questions/ranger-usersync-connect-to-ldap-failed/m-p/163437#M125811</link>
      <description>&lt;P&gt;&lt;A rel="user" href="https://community.cloudera.com/users/140/nsabharwal.html" nodeid="140"&gt;@Neeraj Sabharwal&lt;/A&gt;, thanks for your reply. I've runned on Ambari UI. it works fine. but How can I add ldap user/groups to ranger. seems I can't add them, if there have some docs link. Could you share with me ? Thanks.&lt;/P&gt;&lt;P&gt;We want to use ranger to harden hadoop. &lt;/P&gt;&lt;P&gt;Notes: HDP 2.2 Ranger 0.4&lt;/P&gt;</description>
      <pubDate>Mon, 29 Feb 2016 18:49:27 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/ranger-usersync-connect-to-ldap-failed/m-p/163437#M125811</guid>
      <dc:creator>bigdatacn</dc:creator>
      <dc:date>2016-02-29T18:49:27Z</dc:date>
    </item>
    <item>
      <title>Re: ranger  usersync connect to ldap failed</title>
      <link>https://community.cloudera.com/t5/Support-Questions/ranger-usersync-connect-to-ldap-failed/m-p/163438#M125812</link>
      <description>&lt;P&gt;&lt;A rel="user" href="https://community.cloudera.com/users/2361/w15409999.html" nodeid="2361"&gt;@henryon wen&lt;/A&gt;  Ambari version?&lt;/P&gt;&lt;P&gt;&lt;A href="https://cwiki.apache.org/confluence/display/RANGER/Configure+Ranger+UserSync+for+LDAP"&gt;https://cwiki.apache.org/confluence/display/RANGER/Configure+Ranger+UserSync+for+LDAP&lt;/A&gt;&lt;/P&gt;&lt;P&gt;This is handy &lt;A href="https://cwiki.apache.org/confluence/display/RANGER/LDAP+Connection+Check+Tool" target="_blank"&gt;https://cwiki.apache.org/confluence/display/RANGER/LDAP+Connection+Check+Tool&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 29 Feb 2016 18:55:50 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/ranger-usersync-connect-to-ldap-failed/m-p/163438#M125812</guid>
      <dc:creator>nsabharwal</dc:creator>
      <dc:date>2016-02-29T18:55:50Z</dc:date>
    </item>
    <item>
      <title>Re: ranger  usersync connect to ldap failed</title>
      <link>https://community.cloudera.com/t5/Support-Questions/ranger-usersync-connect-to-ldap-failed/m-p/163439#M125813</link>
      <description>&lt;P&gt;&lt;A rel="user" href="https://community.cloudera.com/users/140/nsabharwal.html" nodeid="140"&gt;@Neeraj Sabharwal&lt;/A&gt;  ambari version 2.0.1&lt;/P&gt;</description>
      <pubDate>Tue, 01 Mar 2016 09:44:59 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/ranger-usersync-connect-to-ldap-failed/m-p/163439#M125813</guid>
      <dc:creator>bigdatacn</dc:creator>
      <dc:date>2016-03-01T09:44:59Z</dc:date>
    </item>
    <item>
      <title>Re: ranger  usersync connect to ldap failed</title>
      <link>https://community.cloudera.com/t5/Support-Questions/ranger-usersync-connect-to-ldap-failed/m-p/163440#M125814</link>
      <description>&lt;A rel="user" href="https://community.cloudera.com/users/2361/w15409999.html" nodeid="2361"&gt;@henryon wen&lt;/A&gt;&lt;P&gt;  This can save you lot of time &lt;A href="https://github.com/abajwa-hw/security-workshops"&gt;https://github.com/abajwa-hw/security-workshops&lt;/A&gt;&lt;/P&gt;&lt;P&gt;The above guide is very helpful to learn security setup. &lt;/P&gt;&lt;P&gt;You asked for official doc &lt;A href="https://cwiki.apache.org/confluence/display/RANGER/Configure+Ranger+UserSync+for+LDAP"&gt;https://cwiki.apache.org/confluence/display/RANGER/Configure+Ranger+UserSync+for+LDAP&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 01 Mar 2016 09:51:08 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/ranger-usersync-connect-to-ldap-failed/m-p/163440#M125814</guid>
      <dc:creator>nsabharwal</dc:creator>
      <dc:date>2016-03-01T09:51:08Z</dc:date>
    </item>
    <item>
      <title>Re: ranger  usersync connect to ldap failed</title>
      <link>https://community.cloudera.com/t5/Support-Questions/ranger-usersync-connect-to-ldap-failed/m-p/163441#M125815</link>
      <description>&lt;P&gt;&lt;A rel="user" href="https://community.cloudera.com/users/140/nsabharwal.html" nodeid="140"&gt;@Neeraj Sabharwal&lt;/A&gt;
&lt;/P&gt;&lt;P&gt;thanks,&lt;/P&gt;&lt;P&gt;btw, I encountered another issues when sync LDAP user/groups. &lt;/P&gt;&lt;P&gt;Can you help on this? Thanks.&lt;/P&gt;&lt;P&gt;The error messages:&lt;/P&gt;&lt;PRE&gt;02 Mar 2016 06:38:09  INFO LdapUserGroupBuilder [UnixUserSyncThread] - LdapUserGroupBuilder initialization completed with --  ldapUrl: ldaps://52.17.129.212:636,  ldapBindDn: cn=admin,dc=abc,dc=com,  ldapBindPassword: ***** ,  ldapAuthenticationMechanism: simple,  userSearchBase: ou=people,dc=abc,dc=com,  userSearchScope: 2,  userObjectClass: person,  userSearchFilter: -,  extendedSearchFilter: (&amp;amp;(objectclass=person)(-)),  userNameAttribute: uid,  userSearchAttributes: [uid, memberof]
02 Mar 2016 06:38:09 ERROR UserGroupSync [UnixUserSyncThread] - Failed to initialize UserGroup source/sink. Will retry after 300000 milliseconds. Error details:
javax.naming.directory.InvalidSearchFilterException: Missing 'equals'; remaining name 'ou=people,dc=abc,dc=com'
at com.sun.jndi.ldap.Filter.encodeSimpleFilter(Filter.java:330)
at com.sun.jndi.ldap.Filter.encodeFilter(Filter.java:146)
at com.sun.jndi.ldap.Filter.encodeFilterList(Filter.java:741)
at com.sun.jndi.ldap.Filter.encodeComplexFilter(Filter.java:657)
at com.sun.jndi.ldap.Filter.encodeFilter(Filter.java:104)
at com.sun.jndi.ldap.Filter.encodeFilterString(Filter.java:74)
at com.sun.jndi.ldap.LdapClient.search(LdapClient.java:547)
at com.sun.jndi.ldap.LdapCtx.doSearch(LdapCtx.java:1985)
at com.sun.jndi.ldap.LdapCtx.searchAux(LdapCtx.java:1847)
at com.sun.jndi.ldap.LdapCtx.c_search(LdapCtx.java:1772)
at com.sun.jndi.toolkit.ctx.ComponentDirContext.p_search(ComponentDirContext.java:386)
at com.sun.jndi.toolkit.ctx.PartialCompositeDirContext.search(PartialCompositeDirContext.java:356)
at com.sun.jndi.toolkit.ctx.PartialCompositeDirContext.search(PartialCompositeDirContext.java:339)
at javax.naming.directory.InitialDirContext.search(InitialDirContext.java:267)
at com.xasecure.ldapusersync.process.LdapUserGroupBuilder.updateSink(LdapUserGroupBuilder.java:195)
at com.xasecure.usergroupsync.UserGroupSync.run(UserGroupSync.java:59)
at java.lang.Thread.run(Thread.java:745)&lt;/PRE&gt;</description>
      <pubDate>Wed, 02 Mar 2016 14:43:40 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/ranger-usersync-connect-to-ldap-failed/m-p/163441#M125815</guid>
      <dc:creator>bigdatacn</dc:creator>
      <dc:date>2016-03-02T14:43:40Z</dc:date>
    </item>
    <item>
      <title>Re: ranger  usersync connect to ldap failed</title>
      <link>https://community.cloudera.com/t5/Support-Questions/ranger-usersync-connect-to-ldap-failed/m-p/163442#M125816</link>
      <description>&lt;P&gt;&lt;A rel="user" href="https://community.cloudera.com/users/2361/w15409999.html" nodeid="2361"&gt;@henryon wen&lt;/A&gt;  Could you help me to close this thread by accepting the answer?&lt;/P&gt;</description>
      <pubDate>Wed, 02 Mar 2016 16:56:45 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/ranger-usersync-connect-to-ldap-failed/m-p/163442#M125816</guid>
      <dc:creator>nsabharwal</dc:creator>
      <dc:date>2016-03-02T16:56:45Z</dc:date>
    </item>
    <item>
      <title>Re: ranger  usersync connect to ldap failed</title>
      <link>https://community.cloudera.com/t5/Support-Questions/ranger-usersync-connect-to-ldap-failed/m-p/163443#M125817</link>
      <description>&lt;P&gt;&lt;A rel="user" href="https://community.cloudera.com/users/2361/w15409999.html" nodeid="2361"&gt;@henryon wen&lt;/A&gt; Please open this as new question&lt;/P&gt;</description>
      <pubDate>Wed, 02 Mar 2016 17:00:28 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/ranger-usersync-connect-to-ldap-failed/m-p/163443#M125817</guid>
      <dc:creator>nsabharwal</dc:creator>
      <dc:date>2016-03-02T17:00:28Z</dc:date>
    </item>
    <item>
      <title>Re: ranger  usersync connect to ldap failed</title>
      <link>https://community.cloudera.com/t5/Support-Questions/ranger-usersync-connect-to-ldap-failed/m-p/163444#M125818</link>
      <description>&lt;P&gt;&lt;A rel="user" href="https://community.cloudera.com/users/140/nsabharwal.html" nodeid="140"&gt;@Neeraj Sabharwal&lt;/A&gt; I've fixed by myself. by setting SYNC_LDAP_USER_SEARCH_FILTER to "uid=*"&lt;/P&gt;</description>
      <pubDate>Wed, 02 Mar 2016 17:25:06 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/ranger-usersync-connect-to-ldap-failed/m-p/163444#M125818</guid>
      <dc:creator>bigdatacn</dc:creator>
      <dc:date>2016-03-02T17:25:06Z</dc:date>
    </item>
    <item>
      <title>Re: ranger  usersync connect to ldap failed</title>
      <link>https://community.cloudera.com/t5/Support-Questions/ranger-usersync-connect-to-ldap-failed/m-p/163445#M125819</link>
      <description>&lt;P&gt;&lt;A rel="user" href="https://community.cloudera.com/users/1281/henry.html" nodeid="1281"&gt;@Henry Oh&lt;/A&gt;  Thanks!  How about the answer of the initial question asked? Could you accept the answer?&lt;/P&gt;</description>
      <pubDate>Wed, 02 Mar 2016 17:29:02 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/ranger-usersync-connect-to-ldap-failed/m-p/163445#M125819</guid>
      <dc:creator>nsabharwal</dc:creator>
      <dc:date>2016-03-02T17:29:02Z</dc:date>
    </item>
    <item>
      <title>Re: ranger  usersync connect to ldap failed</title>
      <link>https://community.cloudera.com/t5/Support-Questions/ranger-usersync-connect-to-ldap-failed/m-p/163446#M125820</link>
      <description>&lt;P&gt;&lt;A rel="user" href="https://community.cloudera.com/users/140/nsabharwal.html" nodeid="140"&gt;@Neeraj Sabharwal&lt;/A&gt; sure&lt;/P&gt;</description>
      <pubDate>Thu, 03 Mar 2016 11:47:19 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/ranger-usersync-connect-to-ldap-failed/m-p/163446#M125820</guid>
      <dc:creator>bigdatacn</dc:creator>
      <dc:date>2016-03-03T11:47:19Z</dc:date>
    </item>
  </channel>
</rss>

