My setup has ranger acquiring users from AD.
I am setting up Ranger repositories and have a question on "ranger policy
user(s)".
Whats the suggested mechanism to setup the 'policy user(s)' ..

>Are we to have these policy users created in AD ..import into Ranger and
give them exclusive permissions via ranger policies so that while others
create policy they would be able to get file/ table resources list ?

> Or should we map these users using auth_to_rule into the respective
service accounts like 'hdfs' 'hive' etc ?

Whats best for a production setup?

*Thanks & Cheers !!*
Arvind

Reply via email to