Member since
09-10-2015
261
Posts
85
Kudos Received
43
Solutions
My Accepted Solutions
Title | Views | Posted |
---|---|---|
3186 | 11-15-2018 10:21 PM | |
1373 | 09-05-2018 09:03 PM | |
2543 | 03-19-2018 09:15 PM | |
2118 | 03-16-2018 08:40 PM | |
1079 | 02-09-2018 05:25 PM |
11-15-2018
10:21 PM
Looks like user does not have the right access in ranger.
... View more
10-25-2018
06:16 PM
1 Kudo
This is probably similar to https://issues.apache.org/jira/browse/RANGER-2234. Please set auto increment value in your mysql conf to 1.
... View more
09-05-2018
09:03 PM
Ranger KMS and Hive workloads will continue to work even when Ranger is down. They will use the local cache of ranger policies downloaded from Ranger. Each plugin pulls the policies periodically (default 30 sec) from Ranger. *** If you found this answer addressed your question, please take a moment to login and click the "accept" link on the answer.
... View more
03-19-2018
09:15 PM
1 Kudo
Delete the entry for "J10001" in x_db_version_h table (in Ranger DB) and restart Ranger.
... View more
03-16-2018
08:40 PM
Looks like is nimbus/sandbox-hdp.hortonworks.com@HORTONWORKS.COM not getting translated into storm. You need to investigate why. Can you check your jaas config and auth to local rules again? Also the core-site.xml property should be hadoop.proxyuser.<component>.groups. Check for the typo, seems like "s" is missing in your config.
... View more
03-16-2018
12:51 AM
Please see this doc - https://docs.hortonworks.com/HDPDocuments/HDP2/HDP-2.6.4/bk_security/content/manually_updating_ambari_hdfs_audit_settings.html - which mentions the below.... For Storm, link to /etc/hadoop/conf/core-site.xml under /usr/hdp/<version>/storm/extlib-daemon/ranger-storm-plugin-impl/conf
... View more
02-09-2018
05:25 PM
Hi: Ranger usersync syncs users from various sources to make these users available during security policy authoring via Ranger UI. At the time of resource access, enforcement of policies is performed by Ranger plugins which depend on the actual service (for example HiveServer2 in case of Hive plugin, HDFS Namenode in case of HDFS plugin) to pass the identity of the user and the groups they belong to. To answer your question, sync source used for ranger usersync does not really affect the actual access enforcement. As long as the users in your text file are consistent with the real user source (LDAP/Unix or AD), ranger policies will work fine. Hope this helps.
... View more
02-07-2018
07:31 PM
Check the errors in ranger admin log. Also check configs for audit (solr url etc) are set correctly.
... View more
02-06-2018
09:42 PM
1 Kudo
Yes, they should get sync'ed.
... View more
02-01-2018
03:14 PM
Check if proxy users configured correctly as per https://docs.hortonworks.com/HDPDocuments/HDP2/HDP-2.6.4/bk_security/content/ch07s01s01s01.html
... View more