<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>question Re: Can un-authorized Hive column be masked or redacted? (instead of failing the query altogether) in Archives of Support Questions (Read Only)</title>
    <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Can-un-authorized-Hive-column-be-masked-or-redacted-instead/m-p/135242#M27523</link>
    <description>&lt;P&gt;There is an enterprise level high performance &lt;A target="_blank" href="https://www.datasunrise.com/masking/hive/"&gt;data masking&lt;/A&gt; for hive at datasunrise
&lt;A href="https://community.cloudera.com/www.datasunrise.com/masking/hive/" target="_blank"&gt;www.datasunrise.com/masking/hive/&lt;/A&gt;&lt;/P&gt;,&lt;P&gt;There is an enterprise level high performance data masking for hive at datasunrise&lt;/P&gt;&lt;P&gt;&lt;A href="https://community.cloudera.com/www.datasunrise.com/masking/hive/" target="_blank"&gt;www.datasunrise.com/masking/hive/&lt;/A&gt;&lt;/P&gt;</description>
    <pubDate>Sat, 26 Nov 2016 08:56:12 GMT</pubDate>
    <dc:creator>trumin</dc:creator>
    <dc:date>2016-11-26T08:56:12Z</dc:date>
    <item>
      <title>Can un-authorized Hive column be masked or redacted? (instead of failing the query altogether)</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Can-un-authorized-Hive-column-be-masked-or-redacted-instead/m-p/135239#M27520</link>
      <description>&lt;P&gt;This is a most common question that I get asked from the customers - who says that failing a hive query altogether makes no sense for them in the enterprise environment, but rather want to have it redacted.&lt;/P&gt;</description>
      <pubDate>Fri, 06 May 2016 21:45:25 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/Can-un-authorized-Hive-column-be-masked-or-redacted-instead/m-p/135239#M27520</guid>
      <dc:creator>hduraiswamy</dc:creator>
      <dc:date>2016-05-06T21:45:25Z</dc:date>
    </item>
    <item>
      <title>Re: Can un-authorized Hive column be masked or redacted? (instead of failing the query altogether)</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Can-un-authorized-Hive-column-be-masked-or-redacted-instead/m-p/135240#M27521</link>
      <description>&lt;P&gt;Because this is the question that I get asked most often times from enterprise customers in the field, here is the answer:&lt;/P&gt;&lt;P&gt;Ranger currently supports resource based and tag based policies for Hive (HDFS files, HBase, etc...), where you can specify a column to be un-authorized for a specific user or user group. This will fail the query by that user/group altogether.&lt;/P&gt;&lt;P&gt;However, there is a work in progress to make queries involving the un-authorized columns to simply mask (redact) the data instead of failing altogether. Here is the jira number &lt;A href="https://hortonworks.jira.com/browse/RMP-3705" target="_blank"&gt;https://hortonworks.jira.com/browse/RMP-3705&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 06 May 2016 21:49:48 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/Can-un-authorized-Hive-column-be-masked-or-redacted-instead/m-p/135240#M27521</guid>
      <dc:creator>hduraiswamy</dc:creator>
      <dc:date>2016-05-06T21:49:48Z</dc:date>
    </item>
    <item>
      <title>Re: Can un-authorized Hive column be masked or redacted? (instead of failing the query altogether)</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Can-un-authorized-Hive-column-be-masked-or-redacted-instead/m-p/135241#M27522</link>
      <description>&lt;P&gt;&lt;A rel="user" href="https://community.cloudera.com/users/1386/hduraiswamy.html" nodeid="1386"&gt;@hduraiswamy&lt;/A&gt; Authorization and Masking are 2 separate events. You would need access to a column for the query to run. If customer would want to filter columns, best way would be to create views. This is no different than other databases. &lt;/P&gt;&lt;P&gt;If the user has access to column, but the column data should be redacted, then masking would be an appropriate solution. &lt;/P&gt;</description>
      <pubDate>Sat, 07 May 2016 01:52:14 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/Can-un-authorized-Hive-column-be-masked-or-redacted-instead/m-p/135241#M27522</guid>
      <dc:creator>bganesan</dc:creator>
      <dc:date>2016-05-07T01:52:14Z</dc:date>
    </item>
    <item>
      <title>Re: Can un-authorized Hive column be masked or redacted? (instead of failing the query altogether)</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Can-un-authorized-Hive-column-be-masked-or-redacted-instead/m-p/135242#M27523</link>
      <description>&lt;P&gt;There is an enterprise level high performance &lt;A target="_blank" href="https://www.datasunrise.com/masking/hive/"&gt;data masking&lt;/A&gt; for hive at datasunrise
&lt;A href="https://community.cloudera.com/www.datasunrise.com/masking/hive/" target="_blank"&gt;www.datasunrise.com/masking/hive/&lt;/A&gt;&lt;/P&gt;,&lt;P&gt;There is an enterprise level high performance data masking for hive at datasunrise&lt;/P&gt;&lt;P&gt;&lt;A href="https://community.cloudera.com/www.datasunrise.com/masking/hive/" target="_blank"&gt;www.datasunrise.com/masking/hive/&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 26 Nov 2016 08:56:12 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/Can-un-authorized-Hive-column-be-masked-or-redacted-instead/m-p/135242#M27523</guid>
      <dc:creator>trumin</dc:creator>
      <dc:date>2016-11-26T08:56:12Z</dc:date>
    </item>
  </channel>
</rss>

