Re: 0.7.0 -> 0.7.1 - servicedef changes?

2018-03-08 Thread Nigel Jones
Not seeing masking policies now.

Again hive still works so it surely must be some issue with our servicedef. Any 
ideas? 

On 2018/03/07 11:22:33, Nigel Jones  wrote: 
> 
> 
> On 2018/03/06 23:59:32, Nigel Jones  wrote: 
> > I have a servicedef which is working well when deployed to a Ranger 0.7.0 
> > server (HDP 2.6.4).
> > I can create an instance of the new service, with access control & masking 
> > policies & they work :-)
> > 
> > However we've found that when deployed to a cleanly built 0.7.1 / master 
> > server (at a few dates in Feb 18) the SAME servicedef results in only 
> > access control policies being authorable on the Ranger GUI, NOT tag based 
> > policies
> 
> Rebuilt with current master (was running ~1 Feb) and can confirm this problem 
> does not occur, so looks like it was a temporary master regression
> 


Re: 0.7.0 -> 0.7.1 - servicedef changes?

2018-03-07 Thread Nigel Jones


On 2018/03/06 23:59:32, Nigel Jones  wrote: 
> I have a servicedef which is working well when deployed to a Ranger 0.7.0 
> server (HDP 2.6.4).
> I can create an instance of the new service, with access control & masking 
> policies & they work :-)
> 
> However we've found that when deployed to a cleanly built 0.7.1 / master 
> server (at a few dates in Feb 18) the SAME servicedef results in only access 
> control policies being authorable on the Ranger GUI, NOT tag based policies

Rebuilt with current master (was running ~1 Feb) and can confirm this problem 
does not occur, so looks like it was a temporary master regression


0.7.0 -> 0.7.1 - servicedef changes?

2018-03-06 Thread Nigel Jones
I have a servicedef which is working well when deployed to a Ranger 0.7.0 
server (HDP 2.6.4).
I can create an instance of the new service, with access control & masking 
policies & they work :-)

However we've found that when deployed to a cleanly built 0.7.1 / master server 
(at a few dates in Feb 18) the SAME servicedef results in only access control 
policies being authorable on the Ranger GUI, NOT tag based policies

The hive servicedef pre-loaded into the ranger build does continue to show 
masking based policies.

Are there any significant changes in ranger in that 0.7.0->0.7.1 timeframe that 
might explain?

Our current servicedef is at 
https://github.com/GaianRangerPlugin/ranger-gaian-plugin/blob/master/plugin/src/main/resources/service-defs/ranger-servicedef-gaian.json

Thanks!
Nigel.