Hive
To enable the Ranger Hive plugin on a Kerberos-enabled cluster, perform the steps described below.
Create the system (OS) user
rangerhivelookup
. Make sure this user is synced to Ranger Admin (under Settings>Users/Groups tab in the Ranger Admin UI).Create a Kerberos principal for
rangerhivelookup
by entering the following command:kadmin.local -q 'addprinc -pw rangerhivelookup rangerhivelookup@example.com
Navigate to the Hive service.
Click the Config tab and navigate to advanced ranger-hive-plugin-properties.
Update the following properties with the values listed in the table below.
Table 3.17. Hive Plugin Properties
Configuration Property Name Value Ranger service config user rangerhivelookup@example.com Ranger service config password rangerhivelookup common.name.for.certificate blank After updating these properties, click Save and then restart the Hive service.