<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>question Re: Ranger AD/LDAP into unix groups in Archives of Support Questions (Read Only)</title>
    <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-AD-LDAP-into-unix-groups/m-p/107028#M25656</link>
    <description>&lt;P&gt;Hi Sunile,&lt;/P&gt;&lt;P&gt;I believe unix groups are not created during AD/LDAP sync with Ranger, however I think that if a policy cannot be checked with AD/LDAP, it will then be checked against unix groups before failing.&lt;/P&gt;</description>
    <pubDate>Wed, 20 Apr 2016 15:35:41 GMT</pubDate>
    <dc:creator>pvillard</dc:creator>
    <dc:date>2016-04-20T15:35:41Z</dc:date>
    <item>
      <title>Ranger AD/LDAP into unix groups</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-AD-LDAP-into-unix-groups/m-p/107027#M25655</link>
      <description>&lt;P&gt;Does ranger creates unix groups during AD/LDAP sync? Curious if the unix groups are used (based on sync) for authorization or native AD/LDAP groups.&lt;/P&gt;</description>
      <pubDate>Wed, 20 Apr 2016 09:30:02 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-AD-LDAP-into-unix-groups/m-p/107027#M25655</guid>
      <dc:creator>sunile_manjee</dc:creator>
      <dc:date>2016-04-20T09:30:02Z</dc:date>
    </item>
    <item>
      <title>Re: Ranger AD/LDAP into unix groups</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-AD-LDAP-into-unix-groups/m-p/107028#M25656</link>
      <description>&lt;P&gt;Hi Sunile,&lt;/P&gt;&lt;P&gt;I believe unix groups are not created during AD/LDAP sync with Ranger, however I think that if a policy cannot be checked with AD/LDAP, it will then be checked against unix groups before failing.&lt;/P&gt;</description>
      <pubDate>Wed, 20 Apr 2016 15:35:41 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-AD-LDAP-into-unix-groups/m-p/107028#M25656</guid>
      <dc:creator>pvillard</dc:creator>
      <dc:date>2016-04-20T15:35:41Z</dc:date>
    </item>
    <item>
      <title>Re: Ranger AD/LDAP into unix groups</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-AD-LDAP-into-unix-groups/m-p/107029#M25657</link>
      <description>&lt;P&gt;Does ranger creates unix groups during AD/LDAP sync?&lt;/P&gt;&lt;P&gt;No - the usersync  just brings in the users and groups for you to see and to be able to create Ranger policy based on the known users and groups .  It does not create them it just reads from your defined source be it unix , AD/LDAP .&lt;/P&gt;&lt;P&gt; Curious if the unix
 groups are used (based on sync) for authorization or native AD/LDAP 
groups. &lt;/P&gt;&lt;P&gt;You create policy and this will let you control access  not authorization.  &lt;/P&gt;&lt;P&gt;The underlying linux filesystem still needs to have SSSD or winBind/samba setup to show the same groups on the filesystem  and the group names need to be the same .  Ranger User sync will not create these groups in linux or hdfs.&lt;/P&gt;</description>
      <pubDate>Wed, 20 Apr 2016 20:41:33 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-AD-LDAP-into-unix-groups/m-p/107029#M25657</guid>
      <dc:creator>mthiele1</dc:creator>
      <dc:date>2016-04-20T20:41:33Z</dc:date>
    </item>
  </channel>
</rss>

