Our Community is getting an upgrade! To get everything ready for the relaunch, we’ll be placing the site in read-only mode starting September 21st.
We really appreciate your understanding while we get things set up behind the scenes. Catch up on all the exciting details about the move here.
Need help or have questions? Drop us a line at [email protected]
Created on 11-15-2017 07:26 PM - edited 08-17-2019 11:14 PM
Hi Gurus,
Can you please validate the expected behaviour of Ranger:
I have a simple table userz with three columns: id, first_name, country.
I have two groups Grp_A, Grp_B and one user User_AB who is a member of both Grp_A and Grp_B.
I have a Row Level Filter Policy on the the userz table with two Row Filter Conditons:
1. Select Group = Grp_A, Access Type = Select, Row Level Filter = (country = 'US')
2. Select Group = Grp_B, Access Type = Select, Row Level Filter = (country = 'Canada')
When I log into hive and do a select * from the userz table my expectation is that I will see rows where country is either US or Canada. However, only the rows of the Row Filter Condition that appears first is returned that is, if Row Level Filter = (country = 'US') is first then US rows are returned and if Row Level Filter = (country = 'Canada') is first only the Canada rows is returned.
Is this the expected behaviour?
Regards,
Mex
Created 11-16-2017 10:16 PM
Yes, this is expected behavior. Ranger matches first row-filter policy line-item (in the same order as specified in the policy).
Created 11-16-2017 10:16 PM
Yes, this is expected behavior. Ranger matches first row-filter policy line-item (in the same order as specified in the policy).
Created 11-17-2017 07:23 AM
Thanks for the confirmation.