You are viewing a plain text version of this content. The canonical link for it is here.
Posted to user@ranger.apache.org by Ma...@fiduciagad.de on 2019/04/11 07:42:03 UTC

export Ranger Audit log and activate logging of unsucessful logins


Hi!

is it possible to export the Audit log shown in der Admin UI as a file or
send it to syslog ? And on the other hand can I activate the audit logging
for saving of unsuccessful logins, to ??  Or is there another way to
recognize illegal login attempts in hadoop.


Best Regards


MARKUS

Fiducia & GAD IT AG | www.fiduciagad.de
AG Frankfurt a. M. HRB 102381 | Sitz der Gesellschaft: Frankfurt a. M. |
USt-IdNr. DE 143582320
Vorstand: Klaus-Peter Bruns (Vorsitzender), Jens-Olaf Bartels,
Martin Beyer, Birgit Frohnhoff, Carsten Pfläging, Jörg Staff
Vorsitzender des Aufsichtsrats: Jürgen Brinkmann

Antwort: Re: export Ranger Audit log and activate logging of unsucessful logins

Posted by Ma...@fiduciagad.de.
Hi Bosco,

thanks for your feedback.


Best Regards,

Markus

Fiducia & GAD IT AG | www.fiduciagad.de
AG Frankfurt a. M. HRB 102381 | Sitz der Gesellschaft: Frankfurt a. M. |
USt-IdNr. DE 143582320
Vorstand: Klaus-Peter Bruns (Vorsitzender), Jens-Olaf Bartels,
Martin Beyer, Birgit Frohnhoff, Carsten Pfläging, Jörg Staff
Vorsitzender des Aufsichtsrats: Jürgen Brinkmann



Von:	Don Bosco Durai <bo...@apache.org>
An:	<us...@ranger.apache.org>
Datum:	14.04.2019 21:39
Betreff:	Re: export Ranger Audit log and activate logging of unsucessful
            logins



Markus

There are couple of ways to get the logs into syslog:
   1.	Use log4j Audit Destination in Ranger plugin.
   2.	You can get from HDFS and stream it to syslog
   3.	Configure File Destination for Ranger Audit Logs and stream it to
      syslog.

Regarding illegal logins, Ranger doesn’t do authentication. So, you might
have look into individual service audit logs.

Bosco


From: <Ma...@fiduciagad.de>
Reply-To: <us...@ranger.apache.org>
Date: Thursday, April 11, 2019 at 12:42 AM
To: <us...@ranger.apache.org>
Subject: export Ranger Audit log and activate logging of unsucessful logins



Hi!

is it possible to export the Audit log shown in der Admin UI as a file or
send it to syslog ? And on the other hand can I activate the audit logging
for saving of unsuccessful logins, to ??  Or is there another way to
recognize illegal login attempts in hadoop.


Best Regards


MARKUS

Fiducia & GAD IT AG | www.fiduciagad.de
AG Frankfurt a. M. HRB 102381 | Sitz der Gesellschaft: Frankfurt a. M. |
USt-IdNr. DE 143582320
Vorstand: Klaus-Peter Bruns (Vorsitzender), Jens-Olaf Bartels,
Martin Beyer, Birgit Frohnhoff, Carsten Pfläging, Jörg Staff
Vorsitzender des Aufsichtsrats: Jürgen Brinkmann





Re: export Ranger Audit log and activate logging of unsucessful logins

Posted by Don Bosco Durai <bo...@apache.org>.
Markus

 

There are couple of ways to get the logs into syslog:
Use log4j Audit Destination in Ranger plugin.
You can get from HDFS and stream it to syslog
Configure File Destination for Ranger Audit Logs and stream it to syslog.
 

Regarding illegal logins, Ranger doesn’t do authentication. So, you might have look into individual service audit logs.

 

Bosco

 

 

From: <Ma...@fiduciagad.de>
Reply-To: <us...@ranger.apache.org>
Date: Thursday, April 11, 2019 at 12:42 AM
To: <us...@ranger.apache.org>
Subject: export Ranger Audit log and activate logging of unsucessful logins

 

Hi!

is it possible to export the Audit log shown in der Admin UI as a file or send it to syslog ? And on the other hand can I activate the audit logging for saving of unsuccessful logins, to ??  Or is there another way to recognize illegal login attempts in hadoop.


Best Regards


MARKUS

Fiducia & GAD IT AG | www.fiduciagad.de
AG Frankfurt a. M. HRB 102381 | Sitz der Gesellschaft: Frankfurt a. M. | USt-IdNr. DE 143582320
Vorstand: Klaus-Peter Bruns (Vorsitzender), Jens-Olaf Bartels, 
Martin Beyer, Birgit Frohnhoff, Carsten Pfläging, Jörg Staff
Vorsitzender des Aufsichtsrats: Jürgen Brinkmann