<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>question Re: after deleting user and group from openLDAP server its shows in ambari and  ranger in Archives of Support Questions (Read Only)</title>
    <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/after-deleting-user-and-group-from-openLDAP-server-its-shows/m-p/211861#M78822</link>
    <description>&lt;P&gt;&lt;A rel="user" href="https://community.cloudera.com/users/2827/umairkhan.html" nodeid="2827"&gt;@Umair Khan&lt;/A&gt; &lt;/P&gt;&lt;P&gt;The below command you gave worked for me. &lt;/P&gt;&lt;PRE&gt;ambari-server sync-ldap --existing&lt;/PRE&gt;&lt;P&gt;you can use this option to synchronize only those entities that are in Ambari with LDAP. Users and groups will be removed from Ambari if they no longer exist in LDAP.&lt;/P&gt;&lt;P&gt;But,we can use &lt;STRONG&gt;'all' &lt;/STRONG&gt;mode with sync-ldap, that will synchronize those entities that are in Ambari with LDAP, means syncs new entries to the ambari as well as removes entries from Ambari if they no longer exist in LDAP.&lt;/P&gt;&lt;PRE&gt; ambari-server sync-ldap --all&lt;/PRE&gt;&lt;P&gt;so, we can add and remove entries to the Ambari at the same time using single command.&lt;/P&gt;&lt;P&gt;Thanks.&lt;/P&gt;</description>
    <pubDate>Tue, 29 May 2018 14:20:39 GMT</pubDate>
    <dc:creator>heta_desai</dc:creator>
    <dc:date>2018-05-29T14:20:39Z</dc:date>
    <item>
      <title>after deleting user and group from openLDAP server its shows in ambari and  ranger</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/after-deleting-user-and-group-from-openLDAP-server-its-shows/m-p/211859#M78820</link>
      <description>&lt;P&gt;HI,&lt;/P&gt;&lt;P&gt;I have configured openLDAP Server. I have synced LDAP users and groups with ranger as well as ambari.&lt;/P&gt;&lt;P&gt; After deleting the users and groups from openLDAP server, it do not deletes from Ambari and ranger databases. &lt;/P&gt;&lt;P&gt;It do not allow to login using deleted user but it shows in UI. &lt;/P&gt;&lt;P&gt;How to automatically delete users and groups from Ambari and ranger database when users and groups are deleted from openLDAP Server ?&lt;/P&gt;&lt;P&gt;Thank You.&lt;/P&gt;</description>
      <pubDate>Mon, 28 May 2018 18:51:23 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/after-deleting-user-and-group-from-openLDAP-server-its-shows/m-p/211859#M78820</guid>
      <dc:creator>heta_desai</dc:creator>
      <dc:date>2018-05-28T18:51:23Z</dc:date>
    </item>
    <item>
      <title>Re: after deleting user and group from openLDAP server its shows in ambari and  ranger</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/after-deleting-user-and-group-from-openLDAP-server-its-shows/m-p/211860#M78821</link>
      <description>&lt;P&gt;If users and groups are deleted in openLDAP server you should use 'existing' mode with ambari ldap sync:&lt;/P&gt;&lt;PRE&gt;ambari-server sync-ldap --existing&lt;/PRE&gt;&lt;P&gt;&lt;A href="https://docs.hortonworks.com/HDPDocuments/Ambari-2.6.0.0/bk_ambari-security/content/existing_users_and_groups.html" target="_blank"&gt;https://docs.hortonworks.com/HDPDocuments/Ambari-2.6.0.0/bk_ambari-security/content/existing_users_and_groups.html&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 28 May 2018 23:02:02 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/after-deleting-user-and-group-from-openLDAP-server-its-shows/m-p/211860#M78821</guid>
      <dc:creator>umair_khan</dc:creator>
      <dc:date>2018-05-28T23:02:02Z</dc:date>
    </item>
    <item>
      <title>Re: after deleting user and group from openLDAP server its shows in ambari and  ranger</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/after-deleting-user-and-group-from-openLDAP-server-its-shows/m-p/211861#M78822</link>
      <description>&lt;P&gt;&lt;A rel="user" href="https://community.cloudera.com/users/2827/umairkhan.html" nodeid="2827"&gt;@Umair Khan&lt;/A&gt; &lt;/P&gt;&lt;P&gt;The below command you gave worked for me. &lt;/P&gt;&lt;PRE&gt;ambari-server sync-ldap --existing&lt;/PRE&gt;&lt;P&gt;you can use this option to synchronize only those entities that are in Ambari with LDAP. Users and groups will be removed from Ambari if they no longer exist in LDAP.&lt;/P&gt;&lt;P&gt;But,we can use &lt;STRONG&gt;'all' &lt;/STRONG&gt;mode with sync-ldap, that will synchronize those entities that are in Ambari with LDAP, means syncs new entries to the ambari as well as removes entries from Ambari if they no longer exist in LDAP.&lt;/P&gt;&lt;PRE&gt; ambari-server sync-ldap --all&lt;/PRE&gt;&lt;P&gt;so, we can add and remove entries to the Ambari at the same time using single command.&lt;/P&gt;&lt;P&gt;Thanks.&lt;/P&gt;</description>
      <pubDate>Tue, 29 May 2018 14:20:39 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/after-deleting-user-and-group-from-openLDAP-server-its-shows/m-p/211861#M78822</guid>
      <dc:creator>heta_desai</dc:creator>
      <dc:date>2018-05-29T14:20:39Z</dc:date>
    </item>
  </channel>
</rss>

