Support Questions
Find answers, ask questions, and share your expertise
Announcements
Alert: Welcome to the Unified Cloudera Community. Former HCC members be sure to read and learn how to activate your account here.

HUE with openLDAP, SENTRY enabled (OpenLdap installed on Secondary namenode)

HUE with openLDAP, SENTRY enabled (OpenLdap installed on Secondary namenode)

New Contributor

Hi,

 

CDH 5.9

 

I have installed openldap on the secondary namenode. I have enabled LDAP on HUE service. I'm able to sync LDAP users and groups to hue. I have also enabled sentry for hue. But, in the WebUI, i'm not able to see add role for any of the databases.

 

If I enable Sentry for Impala and try to create role in the query editor it says the user doesnot have permissions.

2 REPLIES 2
Highlighted

Re: HUE with openLDAP, SENTRY enabled (OpenLdap installed on Secondary namenode)

Champion
What user do you have set as the Sentry 'god'?

sentry.service.admin.group

A user in this list or in a group in the list will be the only one that is able to create the initial roles until some delegation is granted.

Re: HUE with openLDAP, SENTRY enabled (OpenLdap installed on Secondary namenode)

New Contributor

Hi,

 

I have added the group to the sentry admin group. I have logged in with the user which is part of the group. I'm able to see the permissions for the database, but, not able to see the add role and not able to add any permissions.