<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>question Re: Ranger KMS for HDFS Transparent Data Encryption: Switching KMS Keys in Archives of Support Questions (Read Only)</title>
    <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-KMS-for-HDFS-Transparent-Data-Encryption-Switching/m-p/95059#M8372</link>
    <description>&lt;P&gt;I have installed ranger and ranger kms and setup all the configurations and everything is working fine.&lt;/P&gt;&lt;P&gt;I have created encryption zone in hdfs and in the policy i have mentioned two users(user 1 and user 2) to access this encryption zone, they are able to access this encryption zone . I want to set permissions to encryption zone in such a way that user1 should have read and write access and user 2 should have only read access?how can we define this ?&lt;/P&gt;</description>
    <pubDate>Wed, 19 Oct 2016 05:38:38 GMT</pubDate>
    <dc:creator>khadeermhmd</dc:creator>
    <dc:date>2016-10-19T05:38:38Z</dc:date>
    <item>
      <title>Ranger KMS for HDFS Transparent Data Encryption: Switching KMS Keys</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-KMS-for-HDFS-Transparent-Data-Encryption-Switching/m-p/95057#M8370</link>
      <description>&lt;P&gt;Customer would like to know if they are able to switch the keys which are stored in the KMS without re-encrypting HDFS data? I believe this may also be referred to as the EEK (Encrypted Encryption Key)?&lt;/P&gt;&lt;P&gt;&lt;A href="https://hadoop.apache.org/docs/current/hadoop-project-dist/hadoop-hdfs/TransparentEncryption.html#Key_Management_Server_KeyProvider_EDEKs"&gt;Documentation here&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 08 Oct 2015 01:55:26 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-KMS-for-HDFS-Transparent-Data-Encryption-Switching/m-p/95057#M8370</guid>
      <dc:creator>wfloyd</dc:creator>
      <dc:date>2015-10-08T01:55:26Z</dc:date>
    </item>
    <item>
      <title>Re: Ranger KMS for HDFS Transparent Data Encryption: Switching KMS Keys</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-KMS-for-HDFS-Transparent-Data-Encryption-Switching/m-p/95058#M8371</link>
      <description>&lt;P&gt;Yes you will be able to rollover the Encryption Zone Key  (EZKey). EZKey is used to encrypt the key used to encrypt the data/file. There is one active EZ key per encryption zone. You can rollover the EZKey as needed and new EEK (File Keys) will be encrypted with the new key. However file/data keys encrypted with older keys will not be rekeyed. Since the EZKeys are versioned, older EEK will be decrypted with appropriate version. So everything works seamlessly.&lt;/P&gt;</description>
      <pubDate>Thu, 08 Oct 2015 04:45:41 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-KMS-for-HDFS-Transparent-Data-Encryption-Switching/m-p/95058#M8371</guid>
      <dc:creator>bdurai</dc:creator>
      <dc:date>2015-10-08T04:45:41Z</dc:date>
    </item>
    <item>
      <title>Re: Ranger KMS for HDFS Transparent Data Encryption: Switching KMS Keys</title>
      <link>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-KMS-for-HDFS-Transparent-Data-Encryption-Switching/m-p/95059#M8372</link>
      <description>&lt;P&gt;I have installed ranger and ranger kms and setup all the configurations and everything is working fine.&lt;/P&gt;&lt;P&gt;I have created encryption zone in hdfs and in the policy i have mentioned two users(user 1 and user 2) to access this encryption zone, they are able to access this encryption zone . I want to set permissions to encryption zone in such a way that user1 should have read and write access and user 2 should have only read access?how can we define this ?&lt;/P&gt;</description>
      <pubDate>Wed, 19 Oct 2016 05:38:38 GMT</pubDate>
      <guid>https://community.cloudera.com/t5/Archives-of-Support-Questions/Ranger-KMS-for-HDFS-Transparent-Data-Encryption-Switching/m-p/95059#M8372</guid>
      <dc:creator>khadeermhmd</dc:creator>
      <dc:date>2016-10-19T05:38:38Z</dc:date>
    </item>
  </channel>
</rss>

