You can configure a custom Arcadia service account based on existing Hive Ranger Auditing settings.
To change an Arcadia user name and user group to a custom Arcadia Service user name and user group, see Arcadia Service Account.
To configure Arcadia service to automatically use existing Hive Ranger Auditing settings, follow these steps:
In the Advanced arcadia-analytic-engine
section, select the
Enable Apache Ranger Support option.
On the Ambari interface, navigate to Ambari Infra > Configs > Advanced infra-solr-security-json > Ranger audit service users and add Arcadia in the list of users.
Follow these steps to sync Ranger auditing and policies for Arcadia:
Switch to the Ranger Admin interface.
Under Edit Services, in Config Properties, add to the list of users in the Value column under Add New Configurations option. In our example, we added hive,custarcuser1.
Add an Arcadia service account user to Hive ACL rules. In our example, we added custarcuser1 to Policy ID 2.
Switch to the Ranger Admin interface.
Under Edit Services, in Config Properties, add to the list of users in the Value column under Add New Configurations option. In our example, we added hdfs,custarcuser1.
Add an Arcadia service account user to HDFS ACL rules. In our example, we added custarcuser1 to Policy ID 1.
Check the Audit interface in Ranger, for the Arcadia Service Account User.