I have a CDH 5.11 cluster. Users are authenticated using KDC.
I want to restrict access to Hive databases to specific users, who will be able to:
Can I achieve this without Sentry, by configuring HDFS files/floders permissions? There are only few databases (4).
I think you are trying to find easy but unsecure solution to your problem. if you want to limit your users to reach your certain databases, file restriction wouldnt be a primary solution.
Try to set up sentry , it is invented especially for these kinds of task.
here is the link:
you can try to restrict permissions on hive metadata for a specific table or even database
for example: if your cluster metadata is set up with mysql, you can limit the user access on metadata permission.