Created 06-29-2016 04:54 PM
We are enabling the Ranger authorization in Hive, but previously we created roles & grants in beeline. Should we remove manually created Hive grants and roles in beeline before switching from StdSqlAuth to Ranger authorization or will magic happen? The roles we created match our AD group names in the policies. (HDP 2.4)
Created 06-29-2016 05:05 PM
@james.jones - I don't think so as you are modifying authorization property, it should not consider sql grants once you set authorization to Ranger.
Please also have a look at https://community.hortonworks.com/questions/28136/will-ranger-hive-plugin-override-existing-hive-sec...
Created 06-29-2016 05:05 PM
@james.jones - I don't think so as you are modifying authorization property, it should not consider sql grants once you set authorization to Ranger.
Please also have a look at https://community.hortonworks.com/questions/28136/will-ranger-hive-plugin-override-existing-hive-sec...
Created 06-29-2016 05:12 PM
Awesome. Thanks. I wasn't sure if under the covers Ranger was just doing sql grants.