Support Questions

Find answers, ask questions, and share your expertise

Why PAM authentication for Ranger doesn't exist ?


Before the migration from IOP 4.2.5 to HDP 2.6.4, we used PAM authentication for Ranger Admin.

Now we can only have UNIX, LDAP or AD.

Why ? it's very useful to use PAM authentication.


This is because of the Ambari version used, which will be addressed in the next version.

AMBARI-18425 will be available in Ambari 2.7.0 (to be released).

In the meanwhile, if using Ambari 2.6.x (with HDP 2.6.x), set the authentication method as UNIX and add a custom property ranger.pam.authentication.enabled in ranger-admin-site.xml and set it to true.


Okay nice to know that.

but it's strange that when i used IOP 4.2.5 (so with Ambari 2.4.2) this functionnality was implemented

Thanks for your time

yes, that is true. Above Ambari patch mentioned was back-ported to Ambari used with IOP 4.2.5.

Take a Tour of the Community
Don't have an account?
Your experience may be limited. Sign in to explore more.