<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>question Re: Ranger-LDAP integration in Archives of Support Questions (Read Only)</title>
    <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-LDAP-integration/m-p/135118#M27501</link>
    <description>&lt;P&gt;Yes able to see "atewari" use in Ranger UI. Thanks.&lt;/P&gt;</description>
    <pubDate>Tue, 10 May 2016 18:16:29 GMT</pubDate>
    <dc:creator>amittewari_5</dc:creator>
    <dc:date>2016-05-10T18:16:29Z</dc:date>
    <item>
      <title>Ranger-LDAP integration</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-LDAP-integration/m-p/135111#M27494</link>
      <description>&lt;P&gt;The steps for Ranger configuration (cn=Manager,dc=hortonworks,dc=com etc.) vs LDAP structure (cn=ldapusers,ou=Groups,dc=example,dc=com etc) are not in sync at &lt;A href="https://community.hortonworks.com/articles/16696/ranger-ldap-integration.html"&gt;https://&lt;/A&gt;&lt;A href="https://community.hortonworks.com/articles/16696/ranger-ldap-integration.html"&gt;community.hortonworks.com/articles/16696/ranger-ldap-integration.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Since I don't have much experience on LDAP, is their any reliable step-by-step I can use to quickly get upto speed with Ranger/LDAP integration?&lt;/P&gt;</description>
      <pubDate>Fri, 06 May 2016 19:01:43 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-LDAP-integration/m-p/135111#M27494</guid>
      <dc:creator>amittewari_5</dc:creator>
      <dc:date>2016-05-06T19:01:43Z</dc:date>
    </item>
    <item>
      <title>Re: Ranger-LDAP integration</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-LDAP-integration/m-p/135112#M27495</link>
      <description>&lt;P&gt;&lt;A rel="user" href="https://community.cloudera.com/users/3441/amittewari5.html" nodeid="3441"&gt;@Amit Tewari&lt;/A&gt; - &lt;A href="http://crazyadmins.com/how-to-integrate-ranger-with-ldap/" target="_blank"&gt;http://crazyadmins.com/how-to-integrate-ranger-with-ldap/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;If you have any issues, you can ask here. &lt;/P&gt;&lt;P&gt; &lt;A rel="user" href="https://community.cloudera.com/users/2648/sshimpi.html" nodeid="2648"&gt;@Sagar Shimpi&lt;/A&gt; and I Can help you.&lt;/P&gt;</description>
      <pubDate>Fri, 06 May 2016 19:06:07 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-LDAP-integration/m-p/135112#M27495</guid>
      <dc:creator>KuldeepK</dc:creator>
      <dc:date>2016-05-06T19:06:07Z</dc:date>
    </item>
    <item>
      <title>Re: Ranger-LDAP integration</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-LDAP-integration/m-p/135113#M27496</link>
      <description>&lt;P&gt;&lt;A rel="user" href="https://community.cloudera.com/users/3441/amittewari5.html" nodeid="3441"&gt;@Amit Tewari&lt;/A&gt; If you want to have quick setup pls do also refer -
&lt;A href="https://community.hortonworks.com/articles/30653/openldap-setup.html" target="_blank"&gt;https://community.hortonworks.com/articles/30653/openldap-setup.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Let us know if you have any problems with ranger ldap integration.&lt;/P&gt;</description>
      <pubDate>Fri, 06 May 2016 19:38:40 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-LDAP-integration/m-p/135113#M27496</guid>
      <dc:creator>sshimpi</dc:creator>
      <dc:date>2016-05-06T19:38:40Z</dc:date>
    </item>
    <item>
      <title>Re: Ranger-LDAP integration</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-LDAP-integration/m-p/135114#M27497</link>
      <description>&lt;P&gt;Thanks &lt;A rel="user" href="https://community.cloudera.com/users/504/kkulkarni.html" nodeid="504"&gt;@Kuldeep Kulkarni&lt;/A&gt; , &lt;A rel="user" href="https://community.cloudera.com/users/2648/sshimpi.html" nodeid="2648"&gt;@Sagar Shimpi&lt;/A&gt;&lt;/P&gt;&lt;P&gt;LDAP users synched, &lt;EM&gt;however:&lt;/EM&gt;&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;LDAP user not able to login using Ranger UI (Invalid credentials error-"The username or password you entered is incorrect..")&lt;/LI&gt;&lt;LI&gt;LDAP users' group not synched/empty in Ranger UI&lt;/LI&gt;&lt;/OL&gt;</description>
      <pubDate>Mon, 09 May 2016 16:00:56 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-LDAP-integration/m-p/135114#M27497</guid>
      <dc:creator>amittewari_5</dc:creator>
      <dc:date>2016-05-09T16:00:56Z</dc:date>
    </item>
    <item>
      <title>Re: Ranger-LDAP integration</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-LDAP-integration/m-p/135115#M27498</link>
      <description>&lt;P&gt;1. Can you make sure the username and password are correct. Try login from cli just to make ensure.&lt;/P&gt;&lt;P&gt;2. Can you attached ranger usersync.log and xa-portal.log.&lt;/P&gt;</description>
      <pubDate>Mon, 09 May 2016 17:46:22 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-LDAP-integration/m-p/135115#M27498</guid>
      <dc:creator>sshimpi</dc:creator>
      <dc:date>2016-05-09T17:46:22Z</dc:date>
    </item>
    <item>
      <title>Re: Ranger-LDAP integration</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-LDAP-integration/m-p/135116#M27499</link>
      <description>&lt;P&gt;&lt;A rel="user" href="https://community.cloudera.com/users/2648/sshimpi.html" nodeid="2648"&gt;@Sagar Shimpi&lt;/A&gt; &lt;/P&gt;&lt;OL&gt;&lt;LI&gt;username/password are correct. How to login in Ranger from cli?&lt;/LI&gt;&lt;LI&gt;Usersync.log as below. Didnt find xa-portal.log&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;PS- So far have HDP sandbox setup (with openldap). Not using openldap for domain login.&lt;/P&gt;&lt;P&gt;[root@sandbox ~]# tail -f /usr/hdp/current/ranger-usersync/logs/usersync.log &lt;/P&gt;&lt;P&gt;09 May 2016 09:53:04  INFO LdapUserGroupBuilder [UnixUserSyncThread] - LDAPUserGroupBuilder.updateSink() completed with user count: 2
09 May 2016 09:53:04  INFO UserGroupSync [UnixUserSyncThread] - End: update user/group from source==&amp;gt;sink
09 May 2016 10:53:04  INFO UserGroupSync [UnixUserSyncThread] - Begin: update user/group from source==&amp;gt;sink
09 May 2016 10:53:04  INFO LdapUserGroupBuilder [UnixUserSyncThread] - LDAPUserGroupBuilder updateSink started
09 May 2016 10:53:04  INFO LdapUserGroupBuilder [UnixUserSyncThread] - LdapUserGroupBuilder initialization started
09 May 2016 10:53:04  INFO LdapUserGroupBuilder [UnixUserSyncThread] - LdapUserGroupBuilder initialization completed with --  ldapUrl: ldap://localhost:389,  ldapBindDn: cn=Manager,dc=my-domain,dc=com,  ldapBindPassword: ***** ,  ldapAuthenticationMechanism: simple,  searchBase: dc=my-domain,dc=com,  userSearchBase: ou=users,dc=my-domain,dc=com,  userSearchScope: 2,  userObjectClass: person,  userSearchFilter: ,  extendedUserSearchFilter: (objectclass=person),  userNameAttribute: uid,  userSearchAttributes: [uid, ismemberof, memberof],  userGroupNameAttributeSet: [ismemberof, memberof],  pagedResultsEnabled: true,  pagedResultsSize: 500,  groupSearchEnabled: false,  groupSearchBase: dc=my-domain,dc=com,  groupSearchScope: 2,  groupObjectClass: groupofnames,  groupSearchFilter: *,  extendedGroupSearchFilter: (&amp;amp;(objectclass=groupofnames)(*)(member={0})),  extendedAllGroupsSearchFilter: (&amp;amp;(objectclass=groupofnames)(*)),  groupMemberAttributeName: member,  groupNameAttribute: cn,  groupUserMapSyncEnabled: false,  ldapReferral: ignore
09 May 2016 10:53:04  INFO LdapUserGroupBuilder [UnixUserSyncThread] - Updating user count: 1, userName: atewari, groupList: []
09 May 2016 10:53:04  INFO LdapUserGroupBuilder [UnixUserSyncThread] - Updating user count: 2, userName: sbansal, groupList: []
09 May 2016 10:53:04  INFO LdapUserGroupBuilder [UnixUserSyncThread] - LDAPUserGroupBuilder.updateSink() completed with user count: 2
09 May 2016 10:53:04  INFO UserGroupSync [UnixUserSyncThread] - End: update user/group from source==&amp;gt;sink&lt;/P&gt;</description>
      <pubDate>Tue, 10 May 2016 11:00:39 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-LDAP-integration/m-p/135116#M27499</guid>
      <dc:creator>amittewari_5</dc:creator>
      <dc:date>2016-05-10T11:00:39Z</dc:date>
    </item>
    <item>
      <title>Re: Ranger-LDAP integration</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-LDAP-integration/m-p/135117#M27500</link>
      <description>&lt;A rel="user" href="https://community.cloudera.com/users/3441/amittewari5.html" nodeid="3441"&gt;@Amit Tewari&lt;/A&gt;&lt;P&gt;From the usersync log it seems that ranger is able to sync with your ldap, below are the logs -&lt;/P&gt;&lt;P&gt;"LdapUserGroupBuilder [UnixUserSyncThread] - Updating user count: 1, userName: atewari,"&lt;/P&gt;&lt;P&gt;"LDAPUserGroupBuilder.updateSink() completed with user count: 2"&lt;/P&gt;&lt;P&gt;Are you able to see "atewari" use in Ranger UI?&lt;/P&gt;&lt;P&gt;Enable debug in ranger - "vi /usr/hdp/current/ranger-admin/ews/webapp/WEB-INF/log4j.xml"&lt;/P&gt;&lt;P&gt;replace info with debug in above file and restart ranger.&lt;/P&gt;&lt;P&gt;Check xa-portal.log and see if you are able to see any error.&lt;/P&gt;</description>
      <pubDate>Tue, 10 May 2016 15:02:47 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-LDAP-integration/m-p/135117#M27500</guid>
      <dc:creator>sshimpi</dc:creator>
      <dc:date>2016-05-10T15:02:47Z</dc:date>
    </item>
    <item>
      <title>Re: Ranger-LDAP integration</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-LDAP-integration/m-p/135118#M27501</link>
      <description>&lt;P&gt;Yes able to see "atewari" use in Ranger UI. Thanks.&lt;/P&gt;</description>
      <pubDate>Tue, 10 May 2016 18:16:29 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-LDAP-integration/m-p/135118#M27501</guid>
      <dc:creator>amittewari_5</dc:creator>
      <dc:date>2016-05-10T18:16:29Z</dc:date>
    </item>
  </channel>
</rss>

