<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>question Hive Security using Apache Ranger in Archives of Support Questions (Read Only)</title>
    <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Hive-Security-using-Apache-Ranger/m-p/173284#M45966</link>
    <description>&lt;A href="https://community.cloudera.com/legacyfs/online/attachments/9372-screen-shot-2016-11-11-at-114102-am.png"&gt;screen-shot-2016-11-11-at-114102-am.png&lt;/A&gt;&lt;P&gt;&lt;A href="https://community.cloudera.com/legacyfs/online/attachments/9373-screen-shot-2016-11-11-at-114026-am.png"&gt;screen-shot-2016-11-11-at-114026-am.png&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Hello All,&lt;/P&gt;&lt;P&gt;I've configured Hive Security using Apache Ranger, however have a basic question since it doesnt seem t be working as i expected.&lt;/P&gt;&lt;P&gt;Link followed -&amp;gt; &lt;/P&gt;&lt;P&gt;&lt;A href="http://hortonworks.com/hadoop-tutorial/manage-security-policy-hive-hbase-knox-ranger/" target="_blank"&gt;http://hortonworks.com/hadoop-tutorial/manage-security-policy-hive-hbase-knox-ranger/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Here is the scenario :&lt;/P&gt;&lt;P&gt;for user - raj_ops, i've removed access to Hive tables (all tables) through Apache Ranger &lt;/P&gt;&lt;P&gt;So, when i try to execute the following query using user - "Hive view" through Ambari, as expected - access is denied.&lt;/P&gt;&lt;P&gt;Next Step -&lt;/P&gt;&lt;P&gt;I logon to sandbox console using user - raj_ops, and logon to hive, and query table "customer" - I'm able to access the rows in the table !&lt;/P&gt;&lt;P&gt;Any idea why this is so, and what do i need to ensure user - raj_ops is not able to access the Hive table.&lt;/P&gt;&lt;P&gt;STEPS used for logging in to Sandbox &amp;amp; querying&lt;/P&gt;&lt;P&gt;&amp;gt; ssh raj_ops@sandbox.hortonworks.com -p 222&lt;/P&gt;&lt;P&gt;&amp;gt; hive&lt;/P&gt;&lt;P&gt;&amp;gt; use foodmart&lt;/P&gt;&lt;P&gt;&amp;gt; select * from foodmart.customer;&lt;/P&gt;&lt;P&gt;Pls see screenshot attached, raj_ops is able to access the table contents !&lt;/P&gt;</description>
    <pubDate>Sat, 12 Nov 2016 03:43:14 GMT</pubDate>
    <dc:creator>karan_alang1</dc:creator>
    <dc:date>2016-11-12T03:43:14Z</dc:date>
    <item>
      <title>Hive Security using Apache Ranger</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Hive-Security-using-Apache-Ranger/m-p/173284#M45966</link>
      <description>&lt;A href="https://community.cloudera.com/legacyfs/online/attachments/9372-screen-shot-2016-11-11-at-114102-am.png"&gt;screen-shot-2016-11-11-at-114102-am.png&lt;/A&gt;&lt;P&gt;&lt;A href="https://community.cloudera.com/legacyfs/online/attachments/9373-screen-shot-2016-11-11-at-114026-am.png"&gt;screen-shot-2016-11-11-at-114026-am.png&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Hello All,&lt;/P&gt;&lt;P&gt;I've configured Hive Security using Apache Ranger, however have a basic question since it doesnt seem t be working as i expected.&lt;/P&gt;&lt;P&gt;Link followed -&amp;gt; &lt;/P&gt;&lt;P&gt;&lt;A href="http://hortonworks.com/hadoop-tutorial/manage-security-policy-hive-hbase-knox-ranger/" target="_blank"&gt;http://hortonworks.com/hadoop-tutorial/manage-security-policy-hive-hbase-knox-ranger/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Here is the scenario :&lt;/P&gt;&lt;P&gt;for user - raj_ops, i've removed access to Hive tables (all tables) through Apache Ranger &lt;/P&gt;&lt;P&gt;So, when i try to execute the following query using user - "Hive view" through Ambari, as expected - access is denied.&lt;/P&gt;&lt;P&gt;Next Step -&lt;/P&gt;&lt;P&gt;I logon to sandbox console using user - raj_ops, and logon to hive, and query table "customer" - I'm able to access the rows in the table !&lt;/P&gt;&lt;P&gt;Any idea why this is so, and what do i need to ensure user - raj_ops is not able to access the Hive table.&lt;/P&gt;&lt;P&gt;STEPS used for logging in to Sandbox &amp;amp; querying&lt;/P&gt;&lt;P&gt;&amp;gt; ssh raj_ops@sandbox.hortonworks.com -p 222&lt;/P&gt;&lt;P&gt;&amp;gt; hive&lt;/P&gt;&lt;P&gt;&amp;gt; use foodmart&lt;/P&gt;&lt;P&gt;&amp;gt; select * from foodmart.customer;&lt;/P&gt;&lt;P&gt;Pls see screenshot attached, raj_ops is able to access the table contents !&lt;/P&gt;</description>
      <pubDate>Sat, 12 Nov 2016 03:43:14 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/Hive-Security-using-Apache-Ranger/m-p/173284#M45966</guid>
      <dc:creator>karan_alang1</dc:creator>
      <dc:date>2016-11-12T03:43:14Z</dc:date>
    </item>
    <item>
      <title>Re: Hive Security using Apache Ranger</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Hive-Security-using-Apache-Ranger/m-p/173285#M45967</link>
      <description>&lt;P&gt;@&lt;A href="https://community.hortonworks.com/users/14047/karanalang.html"&gt;Karan Alang&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Hive shell is not secured through ranger, its only hiveserver2. &lt;/P&gt;&lt;P&gt;Try what you were trying using beeline or a JDBC app. It should not allow you to get in.&lt;/P&gt;</description>
      <pubDate>Sat, 12 Nov 2016 04:09:46 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/Hive-Security-using-Apache-Ranger/m-p/173285#M45967</guid>
      <dc:creator>srai1</dc:creator>
      <dc:date>2016-11-12T04:09:46Z</dc:date>
    </item>
  </channel>
</rss>

