Help Center/ MapReduce Service/ Component Operation Guide (Normal)/ Using Ranger (MRS 3.x)/ Changing the Ranger Data Source to LDAP for a Normal Cluster
Updated on 2024-12-11 GMT+08:00

Changing the Ranger Data Source to LDAP for a Normal Cluster

By default, the Ranger data source of the security cluster can be accessed by FusionInsight Manager LDAP users. By default, the Ranger data source of a common cluster can be accessed by Unix users.

Prerequisites

  • The cluster is in normal mode.
  • The Ranger component has been installed.

Procedure

  1. Log in to FusionInsight Manager by referring to Accessing FusionInsight Manager (MRS 3.x or Later), choose Cluster > Services > Ranger, click Configurations, and click All Configurations. Click UserSync(Role) and click Customization.
  2. In the ranger.usersync.config.expandor area, set ranger.usersync.sync.source to ldap and ranger.usersync.cookie.enabled to false, as shown in the following figure.

  3. In the upper right corner of the Ranger Dashboard page, click More and choose Synchronize Configuration.

  4. On the Ranger instance page, select the UserSync instance and choose More > Restart Instance.

  5. On the Dashboard page of the Ranger service, click RangerAdmin and choose Settings > Users/Groups/Roles to check whether LDAP users exist.