forked from docs/doc-exports
Reviewed-by: Hasko, Vladimir <vladimir.hasko@t-systems.com> Co-authored-by: Yang, Tong <yangtong2@huawei.com> Co-committed-by: Yang, Tong <yangtong2@huawei.com>
11 KiB
11 KiB
Adding a Ranger Access Permission Policy for Storm
Scenario
The Ranger administrator can use Ranger to set permissions for Storm users.
Prerequisites
- The Ranger service has been installed and is running properly.
- You have created users, user groups, or roles for which you want to configure permissions.
- The Ranger authentication function has been enabled on the page. The option in the following figure controls whether to enable the Ranger plug-in for permission control. If the function is enabled, the Ranger authentication is used. Otherwise, the authentication mechanism of the component is used.
Procedure
- Log in to the Ranger web UI. Click Storm in the STORM area on the homepage.
- Click Add New Policy to add a Storm permission control policy.
- Configure the parameters listed in the table below based on the service demands.
- (Optional) Add the validity period of the policy. Click Add Validity period in the upper right corner of the page, set Start Time and End Time, and select Time Zone. Click Save. To add multiple policy validity periods, click
. To delete a policy validity period, click
.
- Click Add to view the basic information about the policy in the policy list. After the policy takes effect, check whether the related permissions are normal.
To disable a policy, click
to edit the policy and set the policy to Disabled.
Parent topic: Using Ranger (MRS 3.x)