You are viewing a plain text version of this content. The canonical link for it is here.
Posted to dev@ranger.apache.org by "Don Bosco Durai (JIRA)" <ji...@apache.org> on 2015/10/12 23:57:05 UTC

[jira] [Created] (RANGER-691) Ranger Admin shouldn't expect users to be sync'ed for authentication

Don Bosco Durai created RANGER-691:
--------------------------------------

             Summary: Ranger Admin shouldn't expect users to be sync'ed for authentication
                 Key: RANGER-691
                 URL: https://issues.apache.org/jira/browse/RANGER-691
             Project: Ranger
          Issue Type: Improvement
    Affects Versions: 0.5.1
            Reporter: Don Bosco Durai
             Fix For: 0.6.0


Currently, if admin user is in in LDAP, but not synchronized, then RangerAdmin will not allow the user to login.

I feel, we should allow login and get the groups for the user in real-time from the LDAP. This way, we are not enforcing all users to be sync'ed. In some cases, it might be possible only to sync groups because of size or other challenges.



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)