Created 02-02-2017 11:54 PM
Hello guys, I'm thinking this might be quick: ranger[hdfs|hbase|knox|hive]lookup user required for Knox integration (
) does anybody know if it needs any groups associated with it (or even should it?)
Created 02-03-2017 09:39 AM
@rbailey No, technically they don't need a group associated with them. Also they don't need to be able to login to any systems. As long as there is a principal in Kerberos for them and they can authenticate against the KDC you should be okay. As per the answer in the other article you linked to I usually just create a single 'rangerlookup' user and principal to be used by all the services.
Created 02-03-2017 09:39 AM
@rbailey No, technically they don't need a group associated with them. Also they don't need to be able to login to any systems. As long as there is a principal in Kerberos for them and they can authenticate against the KDC you should be okay. As per the answer in the other article you linked to I usually just create a single 'rangerlookup' user and principal to be used by all the services.
Created 02-03-2017 11:49 AM
Excellent, I have successfully created the user with uid=gid and it worked fine. Thanks!