Enabling ABFS File Browser in Hue with RAZ in DataHub
Hue offers you the capability to browse Azure Data Lake Storage (ADLS) Gen2 file system, upload files to ABFS, and create tables by importing files from ABFS containers. With RAZ, you can grant fine-grained access to per-user home directories and other directories within the ADLS containers using Ranger policies.
Hue administrators can create home directories for users by selecting the Create home directory option on the user's profile in Hue. If fine-grained authorization is enabled to access ADLS containers, then user home directories are automatically created when a user logs into Hue. You can disable automatic creation of user directories.
- Register an Azure environment with the Enable Ranger authorization for ADLS Gen2 option enabled. You can use the CDP web interface or the CDP CLI to complete this task.
- Create a Data Hub cluster with Data Engineering or Data Mart cluster template.
- Create the following Ranger policies:
- Hadoop SQL policy (all - database, table, column, all - url).
- ABFS (cm_ADLS) policy (Default: User Home)
You must specify the storage account name in the Storage Account field and the directory path of the container and its sub-directories in the Storage Account Container field of the cm_ADLS Ranger policy.
- Grant appropriate permissions to the users in CDP User Management Service (UMS). For example, EnvironmentUser.