Support Questions

Find answers, ask questions, and share your expertise

Does Ambari server need ldap-sync to be executed after adding an user to groups in AD

avatar
Expert Contributor

We have Ambari 2.1.1 with Ambari views and AD integration. Do we need to run ldap-sync after an user is added to the group in AD. We have an issue where user is not authorized until we ran ldap-sync even though the user was part of the group having access to Views.

1 ACCEPTED SOLUTION

avatar
Master Guru

Hi @nyakkanti, see this for Ambari REST API calls to automate ldap-sync and run it using cron.

View solution in original post

2 REPLIES 2

avatar

Hi there @nyakkanti you do indeed need to re-run ldap-sync so that Ambari will be able to know about that new user.

This is covered in more detail at the link below:

https://docs.hortonworks.com/HDPDocuments/Ambari-2.2.1.0/bk_Ambari_Security_Guide/content/_specific_...

avatar
Master Guru

Hi @nyakkanti, see this for Ambari REST API calls to automate ldap-sync and run it using cron.