Enable access to Knox and NiFi

When NiFi is set up behind Knox, you need to define a Ranger policy that allows users to access NiFi through Knox.

You are a Ranger administrator.

  1. From the Base cluster, select Ranger from the list of services. Click Ranger Admin Web UI and log into Ranger.

    The Ranger Service Manager page displays.



    Each cluster in the environment is listed under its respective service.

  2. From the Knox folder, select the cluster that you need to provide access to.
    The List of Policies page appears.
  3. Click Add New Policy.
    The Create Policy page appears.
  4. Enter a unique name for the policy.
  5. Optionally, enter a keyword in the Policy Label field to aid in searching for a policy.
  6. Enter the Knox topology in the Knox Topology field.
    The default values for the CDP topologies are cdp-proxy and cdp-proxy-api. You can retrieve the information from Cloudera Manager in the Knox configuration details.
  7. Enter nifi in the Knox Service field.
  8. Optionally, enter a description.
  9. Add a user or a group.
  10. Set the Permissions field to Allow.
  11. Click Add to save the new policy.
The user or group of users can now access NiFi through Knox based on what you defined in the Knox Topology field.