Policy definition and auditing for HDFS

For every service in Ranger, we can associate different policies to the resources in the service. In case of HDFS, the resources will be the file/directory paths.

In this section, we will define a new policy for an HDFS path called projects for three users: hdfs-alice, hdfs-bob, and hdfs-tom. Where only hdfs-alice is allowed all permissions and rest of the users have only read access.

We will see how Ranger enforces access restrictions once the policy is in place.

Let's see the screen for the policy creation:

Screenshot showing how Ranger enforces access restrictions

Once we hit the Add button, this ...

Get Modern Big Data Processing with Hadoop now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.