<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>question Re: Active Directory Group to Role Mapping CDP 7.1.6 in Support Questions</title>
    <link>https://community.cloudera.com/t5/Support-Questions/Active-Directory-Group-to-Role-Mapping-CDP-7-1-6/m-p/322314#M228746</link>
    <description>&lt;P&gt;With some help from a colleague, we figured out that all I needed to do was go into Administration &amp;gt; Users &amp;amp; Roles &amp;gt; LDAP/PAM Groups.&lt;/P&gt;&lt;P&gt;There, I clicked on the "Add LDAP/PAM Group Mapping" and added the group I expected to be synced from Active Directory, along with a role assignment.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="CaptainJa_0-1628589033903.png" style="width: 400px;"&gt;&lt;img src="https://community.cloudera.com/t5/image/serverpage/image-id/32043iA5511A8DC12437AA/image-size/medium?v=v2&amp;amp;px=400" role="button" title="CaptainJa_0-1628589033903.png" alt="CaptainJa_0-1628589033903.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;This was enough to make sure that the user after being authenticated, was able to login in with the right role privileges.&lt;/P&gt;</description>
    <pubDate>Tue, 10 Aug 2021 09:51:07 GMT</pubDate>
    <dc:creator>CaptainJa</dc:creator>
    <dc:date>2021-08-10T09:51:07Z</dc:date>
    <item>
      <title>Active Directory Group to Role Mapping CDP 7.1.6</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Active-Directory-Group-to-Role-Mapping-CDP-7-1-6/m-p/322310#M228744</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am facing a&amp;nbsp;challenge with authentication and authorizing Active Directory users on Cloudera CDP 7.1.6. I followed the steps here to make the necessary configurations (&lt;A href="https://docs.cloudera.com/cdp-private-cloud-base/7.1.6/security-kerberos-authentication/topics/cm-security-external-authentication-ad.html" target="_blank" rel="noopener"&gt;https://docs.cloudera.com/cdp-private-cloud-base/7.1.6/security-kerberos-authentication/topics/cm-security-external-authentication-ad.html&lt;/A&gt;).&lt;/P&gt;&lt;P&gt;The challenge is that I am able to login with AD users but there is no group to role mapping, which results in a blank page for the user.&lt;/P&gt;&lt;P&gt;I checked this other page (&lt;A href="https://docs.cloudera.com/cdp-private-cloud-base/7.1.6/managing-clusters/topics/cm-security-authorization-user-roles.html)" target="_blank" rel="noopener"&gt;https://docs.cloudera.com/cdp-private-cloud-base/7.1.6/managing-clusters/topics/cm-security-authorization-user-roles.html)&lt;/A&gt; which handles mapping external authentication to roles. However, it skips Active Directory instructions and mentions only that of external programs and SAML scripts.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Does anyone have an idea of how to map groups from an Active Directory source to Cloudera Roles? or is there some other documentation I should refer to?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks in advance for the support.&lt;BR /&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 21 Apr 2026 09:00:01 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Active-Directory-Group-to-Role-Mapping-CDP-7-1-6/m-p/322310#M228744</guid>
      <dc:creator>CaptainJa</dc:creator>
      <dc:date>2026-04-21T09:00:01Z</dc:date>
    </item>
    <item>
      <title>Re: Active Directory Group to Role Mapping CDP 7.1.6</title>
      <link>https://community.cloudera.com/t5/Support-Questions/Active-Directory-Group-to-Role-Mapping-CDP-7-1-6/m-p/322314#M228746</link>
      <description>&lt;P&gt;With some help from a colleague, we figured out that all I needed to do was go into Administration &amp;gt; Users &amp;amp; Roles &amp;gt; LDAP/PAM Groups.&lt;/P&gt;&lt;P&gt;There, I clicked on the "Add LDAP/PAM Group Mapping" and added the group I expected to be synced from Active Directory, along with a role assignment.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="CaptainJa_0-1628589033903.png" style="width: 400px;"&gt;&lt;img src="https://community.cloudera.com/t5/image/serverpage/image-id/32043iA5511A8DC12437AA/image-size/medium?v=v2&amp;amp;px=400" role="button" title="CaptainJa_0-1628589033903.png" alt="CaptainJa_0-1628589033903.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;This was enough to make sure that the user after being authenticated, was able to login in with the right role privileges.&lt;/P&gt;</description>
      <pubDate>Tue, 10 Aug 2021 09:51:07 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Support-Questions/Active-Directory-Group-to-Role-Mapping-CDP-7-1-6/m-p/322314#M228746</guid>
      <dc:creator>CaptainJa</dc:creator>
      <dc:date>2021-08-10T09:51:07Z</dc:date>
    </item>
  </channel>
</rss>

