Chapter 8. Configure Service Level Authorization

Use Knox Gateway ACLs to restrict access to Hadoop services.

[Note]Note

Group membership is determined by the identity-assertion parameter group.principal.mapping, see Mapping Users to Groups and/or by the group field of an SSO authenticated request, see Setting up a Federation Provider for SSO.


loading table of contents...