-
How to integrate with LDAP?
-
Setup details
- We will be using a 2 VM setup: one with LDAP and one with HDP 2.2. In this example we will be using a single node HDP 2.2 setup installed via Ambari with Hue setup
- The official 2.2 sandbox is not being used as it already has Ranger installed.
- Install Centos 6.5 on on VM and setup FreeIPA using steps here
- Download prebuilt HDP 2.2 GA sandbox VM image with Hue from here. Import Hortonworks_2.2_GA.ova into VirtualBox/VMWare and configure its memory size to be at least 8GB RAM and start VM
Configure kerberos with LDAP on single node running HDP 2.2 using IPA. Instructions here
Setup Ranger and authorization policies and review audit reports from a Rangers Policy Manager on HDP 2.2 using steps here
Enable Knox to work with kerberos enabled cluster to enable perimeter security on HDP 2.2 using steps here
For resources on topics such as the below, refer to here
- Troubleshooting
- Encryption at Rest
- HDFS TDE
- LUKS volume encryption
- Audit logs in HDFS
- Wire encryption
- Security related Ambari services