I'm trying to implement admission control in my Impala cluster. Cluster use OpenLDAP for authentication and Sentry for authorization. I'm able to grant roles to LDAP groups as follows: "grant role dba to group `gn:proj:admin`;"
Now I would like to assign users to admission control resource pools based on their LDAP group. I see there are "Use the pool root.[primary group]" and "Use the pool root.[secondary group]." However, I'm not able to create resource pools named "gn:proj:admin".
It seems like I'm making some conceptual mistake here and this is either not possible or should be done in some other way. Could you please share any guidelines on this?