Support Questions
Find answers, ask questions, and share your expertise
Announcements
Alert: Welcome to the Unified Cloudera Community. Former HCC members be sure to read and learn how to activate your account here.

HDP 2.6 link between atlas user / hbase access / ranger

Highlighted

HDP 2.6 link between atlas user / hbase access / ranger

New Contributor

Hello,
I have had to reinstall an atlas service which does not used defaut atlas user (it uses atlas-pre)
the cluster use kerberos.

Atlas service start, but the web UI is not accessible.
I have an error
Caused by: org.apache.hadoop.hbase.security.AccessDeniedException: org.apache.hadoop.hbase.security.AccessDeniedException: Insufficient permissions for user ‘atlas-pre/FQN@DOMAIN.LOCAL',action: get, tableName:atlas_titan, family:s.
atlas-pre user is defined in ranger
when I launch
hbase shell with kinit using hbase.headless.keytab I can scan atlas_titan table
but with atlas.service.keytab containing atlas-pre/FQN@... I have the access denied
ranger audit don't works correctly, so I can't see if ranger refuse the acces in the audit.

Don't have an account?
Coming from Hortonworks? Activate your account here