This topic describes how to integrate Ranger Admin with an LDAP server. After the integration, you can use an account in the LDAP server to log on to Ranger web UI.
Background information
After Ranger Admin is integrated with an LDAP server, a user of the LDAP server can log on to the Ranger web UI. After logon, Ranger automatically creates this user as an external user on the Users page. By default, this user can only view the information of Ranger services and policies. The admin user can upgrade standard users to administrators on the Users page.
EMR V3.28.0 and later V3.X versions, and EMR V4.3.0 and later
- Go to the Configure tab for the Ranger service.
- Log on to the EMR console.
- In the top navigation bar, select the region where your cluster resides. Select the resource group as required. By default, all resources of the account appear.
- Click the Cluster Management tab.
- Find your cluster and click Details in the Actions column.
- In the left-side navigation pane, click Cluster Service and then RANGER.
- Click the Configure tab.
- Configure parameters on the ranger-admin-site tab.
- Restart Ranger Admin to make the configurations take effect.
- In the left-side navigation pane, click Cluster Service and then .
- In the Components section, find the RangerAdmin parameter and click Restart in the Actions column.
- In the Cluster Activities dialog box, configure the parameters.
- Click OK.
- In the Confirm message, click OK.