Ranger Kafka plugin

Prerequisites

Prerequisites for authorization in Kafka using Ranger:

  1. ADS cluster is installed with configured authentication using MIT Kerberos or MS Active Directory protocols.

  2. ADPS cluster is installed.

  3. ADS cluster integration is enabled on ADPS cluster.

Activate the Ranger Kafka plugin

To activate the Ranger Kafka plugin, do the following:

  1. Initiate activation of the Ranger Kafka plugin. To do this, apply the Manage Ranger plugin action by clicking on the actions default dark actions default light in the Actions column of the Kafka service.

    ads ranger 02
    Activation of the Ranger Kafka plugin

    In the Run an action:Manage Ranger plugin window that opens, mark the required state of the Desired plugin state parameter and click Run.

    If you select the enable state, then the default policy for the Ranger Kafka plugin will be applied to Ranger.

    ads ranger 02 1
    Enabling the Ranger Kafka plugin
  2. Verify the action in the opened window.

    ads ranger 02 2
    Verify the action
  3. Wait until the activation process of the Ranger Kafka plugin is completed and the default policy is created on the Ranger side. Analyze and correct errors if they occur.

    ads ranger 11
    Ranger Kafka Plugin installation process

Check the activated Ranger Kafka Plugin

After successful activation, the authorization policy service for the Kafka service of the selected ADS cluster will appear in the Service manager interface.

To view the created policies for the cluster, click on the name of the service.

ads ranger 08 dark
Go to the created policy service
ads ranger 08 light
Go to the created policy service

This makes available the policies automatically created for the cluster servers.

To view, edit or delete policies, use the buttons in the Action column.

ads ranger 10 dark
Created policies for the ADS cluster
ads ranger 10 light
Created policies for the ADS cluster
Found a mistake? Seleсt text and press Ctrl+Enter to report it