Yang, Tong 6182f91ba8 MRS component operation guide_normal 2.0.38.SP20 version
Reviewed-by: Hasko, Vladimir <vladimir.hasko@t-systems.com>
Co-authored-by: Yang, Tong <yangtong2@huawei.com>
Co-committed-by: Yang, Tong <yangtong2@huawei.com>
2022-12-09 14:55:21 +00:00

48 lines
6.5 KiB
HTML

<a name="mrs_01_1032"></a><a name="mrs_01_1032"></a>
<h1 class="topictitle1">Creating a Kafka Role</h1>
<div id="body1590133653330"><div class="section" id="mrs_01_1032__sbc30082d821d4b1099fd200b9d875239"><h4 class="sectiontitle">Scenario</h4><p id="mrs_01_1032__aeed1d3ec23234cb2bcddc520171402b7">This section describes how to create and configure a Kafka role.</p>
<p id="mrs_01_1032__p1944684185813">This section applies to MRS 3.x or later.</p>
</div>
<div class="note" id="mrs_01_1032__n29c1b1a00b05409db5744f05b20ff015"><img src="public_sys-resources/note_3.0-en-us.png"><span class="notetitle"> </span><div class="notebody"><p id="mrs_01_1032__a00e7ff6224244911883c53f4912abba8">Users can create Kafka roles only in security mode.</p>
<p id="mrs_01_1032__p1276581555">If the current component uses Ranger for permission control, you need to configure permission management policies based on Ranger. For details, see <a href="mrs_01_1861.html">Adding a Ranger Access Permission Policy for Kafka</a>.</p>
</div></div>
<div class="section" id="mrs_01_1032__seab5c17fe0114e658ff1740e828d76e7"><h4 class="sectiontitle">Prerequisites</h4><p id="mrs_01_1032__p144134955510">The system administrator has understood the service requirements.</p>
</div>
<div class="section" id="mrs_01_1032__section865105193019"><h4 class="sectiontitle">Procedure</h4><ol id="mrs_01_1032__o6536c1fccc3f4a48abe1020fbb82a2b1"><li id="mrs_01_1032__l42a6593d7496460584caffa59ce793fa"><span>Log in to FusionInsight Manager and choose <strong id="mrs_01_1032__b171711542104212">System</strong> &gt; <strong id="mrs_01_1032__b1415574414216">Permission</strong> &gt; <strong id="mrs_01_1032__b1736144618425">Role</strong>.</span></li><li id="mrs_01_1032__l48758865b7134c5180ee9cd098d62358"><span>On the displayed page, click <strong id="mrs_01_1032__b10617136733957">Create Role</strong> and enter a <strong id="mrs_01_1032__b214488231333957">Role Name</strong> and <strong id="mrs_01_1032__b207060700733957">Description</strong>.</span></li><li id="mrs_01_1032__li03791051132013"><span>On the <strong id="mrs_01_1032__b34071636144316">Configure Resource Permission</strong> page, choose <em id="mrs_01_1032__i15412153619433">Name of the desired cluster</em> &gt; <strong id="mrs_01_1032__b20413536194320">Kafka</strong>.</span></li><li id="mrs_01_1032__l7186161e0bef46d2b0bbba48f47811cd"><span>Select permissions based on service requirements. For details about configuration items, see <a href="#mrs_01_1032__table25376475282">Table 1</a>.</span><p>
<div class="tablenoborder"><a name="mrs_01_1032__table25376475282"></a><a name="table25376475282"></a><table cellpadding="4" cellspacing="0" summary="" id="mrs_01_1032__table25376475282" frame="border" border="1" rules="all"><caption><b>Table 1 </b>Description</caption><thead align="left"><tr id="mrs_01_1032__row145381247152817"><th align="left" class="cellrowborder" valign="top" width="39.09%" id="mcps1.3.4.2.4.2.1.2.3.1.1"><p id="mrs_01_1032__p45386472286"><strong id="mrs_01_1032__b4200856125117">Scenario</strong></p>
</th>
<th align="left" class="cellrowborder" valign="top" width="60.91%" id="mcps1.3.4.2.4.2.1.2.3.1.2"><p id="mrs_01_1032__p1334011246306"><strong id="mrs_01_1032__b7252617524">Role Authorization</strong></p>
</th>
</tr>
</thead>
<tbody><tr id="mrs_01_1032__row1453844742812"><td class="cellrowborder" valign="top" width="39.09%" headers="mcps1.3.4.2.4.2.1.2.3.1.1 "><p id="mrs_01_1032__p1538164712286">Setting the Kafka administrator permissions</p>
</td>
<td class="cellrowborder" valign="top" width="60.91%" headers="mcps1.3.4.2.4.2.1.2.3.1.2 "><p id="mrs_01_1032__p10137194312338">In the <strong id="mrs_01_1032__b17773161415455">Configure Resource Permission</strong> table, choose <em id="mrs_01_1032__i187781214164519">Name of the desired cluster</em> &gt; <strong id="mrs_01_1032__b177784143453">Kafka </strong>&gt; <strong id="mrs_01_1032__b67781814104510">Kafka Manager Privileges</strong>.</p>
<div class="note" id="mrs_01_1032__note6859201317246"><span class="notetitle"> NOTE: </span><div class="notebody"><p id="mrs_01_1032__p172316258278">This permission allows you to create and delete topics, but does not allow you to produce or consume any topics.</p>
</div></div>
</td>
</tr>
<tr id="mrs_01_1032__row17538647112817"><td class="cellrowborder" valign="top" width="39.09%" headers="mcps1.3.4.2.4.2.1.2.3.1.1 "><p id="mrs_01_1032__p6539121692914">Setting the production permission of a user on a topic</p>
</td>
<td class="cellrowborder" valign="top" width="60.91%" headers="mcps1.3.4.2.4.2.1.2.3.1.2 "><ol type="a" id="mrs_01_1032__ol198671735324"><li id="mrs_01_1032__li15867173133219">In the <strong id="mrs_01_1032__b17501138184511">Configure Resource Permission</strong> table, choose <em id="mrs_01_1032__i10506163864514">Name of the desired cluster</em> &gt; <strong id="mrs_01_1032__b135061438144516">Kafka </strong>&gt; <strong id="mrs_01_1032__b4507113817459">Kafka Topic Producer And Consumer Privileges</strong>.</li><li id="mrs_01_1032__li11867632327">In the <strong id="mrs_01_1032__b114325407833957">Permission </strong>column of the specified topic, select <strong id="mrs_01_1032__b5743475633957">Kafka Producer Permission</strong>.</li></ol>
</td>
</tr>
<tr id="mrs_01_1032__row4538104742810"><td class="cellrowborder" valign="top" width="39.09%" headers="mcps1.3.4.2.4.2.1.2.3.1.1 "><p id="mrs_01_1032__p3717421182914">Setting the consumption permission of a user on a topic</p>
</td>
<td class="cellrowborder" valign="top" width="60.91%" headers="mcps1.3.4.2.4.2.1.2.3.1.2 "><ol type="a" id="mrs_01_1032__ol595216331354"><li id="mrs_01_1032__li2953153313352">In the <strong id="mrs_01_1032__b165972566459">Configure Resource Permission</strong> table, choose <em id="mrs_01_1032__i4602145614513">Name of the desired cluster</em> &gt; <strong id="mrs_01_1032__b1260275654512">Kafka </strong>&gt; <strong id="mrs_01_1032__b56024568453">Kafka Topic Producer And Consumer Privileges</strong>.</li><li id="mrs_01_1032__li17953153315356">In the <strong id="mrs_01_1032__b198628850633957">Permission </strong>column of the specified topic, select <strong id="mrs_01_1032__b207668536833957">Kafka Consumer Privileges</strong>.</li></ol>
</td>
</tr>
</tbody>
</table>
</div>
</p></li><li id="mrs_01_1032__l85da2df4496c447ebe9958a68d8318e8"><span>Click <strong id="mrs_01_1032__b8693565733957">OK</strong>, and return to the <strong id="mrs_01_1032__b162785363633957">Role</strong> page.</span></li></ol>
</div>
</div>
<div>
<div class="familylinks">
<div class="parentlink"><strong>Parent topic:</strong> <a href="mrs_01_0375.html">Using Kafka</a></div>
</div>
</div>