Hi team! Gravitino supports Ranger plugin now. But it can only protect the metadata in the MetaStore. Users can operate the data in the HDFS. We need to protect the data and meta data at the same time. For Ranger, Hive MetaStore and HDFS uses different Ranger services. We need a mechanism to grant the privileges to two kinds of services. So I propose a document about chained authorization plugin. Document link <https://docs.google.com/document/d/1LmFLbJUqGPYGScipI_bm4fhLgOwfPQsV-RJwov_djiM/edit?tab=t.0#heading=h.iy6svio5tt39> Any suggestion is welcome.
Best regards Rory