Hello Experts,

Instead of adding AD groups to Ranger policies , we want to add users to
the policies and control the access to resources.
I know that is not the industry standard, but the requirement is too adhoc
and we want to control access via Ranger rather than updating and removing
users from AD groups.

To achieve this would like to know below things :

1. Will there be any performance impact during authorization phase , if we
add thousands of users in a Ranger policy instead of the AD group ?
2. How big can the policy cache file grow ?
3. Is there any limit on number of users that I can add to a Ranger policy ?

Thanks,
Kunal

Reply via email to