Skip to content

[doc](fe) Add Ranger-Hive authorization guide - #4055

Open
seawinde wants to merge 1 commit into
apache:masterfrom
seawinde:docs/ranger-hive-authorization
Open

[doc](fe) Add Ranger-Hive authorization guide#4055
seawinde wants to merge 1 commit into
apache:masterfrom
seawinde:docs/ranger-hive-authorization

Conversation

@seawinde

Copy link
Copy Markdown
Member

What problem does this PR solve?

Issue Number: N/A

Related PR: N/A

Problem Summary:
Apache Doris did not have a complete public guide for applying Ranger Hive policies to Hive Catalogs. Users could not reliably distinguish the Ranger plugin service type from the Ranger WebUI Service Name, and Kerberos-enabled Ranger Admin deployments lacked an end-to-end configuration and troubleshooting procedure.

This PR adds Current and 4.x Ranger-Hive authorization guides in English and Chinese. The guides cover authorization boundaries, runnable configuration, permission mapping, row filtering, data masking, Kerberos/SPNEGO policy download, HTTPS trust configuration, multiple Catalog constraints, and troubleshooting. The pages are added under System Administration > Security and Authentication > Authorization, and the existing Ranger page is labeled Ranger-Doris for clarity.

The guide is limited to Current and 4.x because earlier active documentation versions do not support the Ranger-Hive Access Controller described here.

Release note

Added English and Chinese Ranger-Hive authorization guides for Current and 4.x documentation.

Check List (For Author)

  • Test
    • Regression test
    • Unit Test
    • Manual test (add detailed scripts or steps below)
    • No need to test or manual test. Explain why:
      • This is a refactor/code format and no logic has been changed.
      • Previous test can cover this change.
      • No code files have been changed.
      • Other reason

Manual validation:

  • Parsed all XML examples.

  • Validated all shell examples with bash -n.

  • Ran changed-document link, feature, i18n sync, and lint checks.

  • Built the English and Chinese Docusaurus documentation sites.

  • Behavior changed:

    • No.
    • Yes.
  • Does this need documentation?

    • No.
    • Yes.

Check List (For Reviewer who merge this PR)

  • Confirm the release note
  • Confirm test cases
  • Confirm document
  • Add branch pick label

### What problem does this PR solve?

Issue Number: N/A

Related PR: N/A

Problem Summary: Apache Doris did not have a complete public guide for applying Ranger Hive policies to Hive Catalogs. Add Current and 4.x guides in English and Chinese, including authorization boundaries, runnable configuration, Kerberos and HTTPS setup, policy mapping, and troubleshooting. Add both pages to the authorization sidebar and clarify the existing Ranger-Doris page title.

### Release note

Added English and Chinese Ranger-Hive authorization guides for Current and 4.x documentation.

### Check List (For Author)

- Test: Manual test
    - Validated shell and XML examples, documentation governance checks, and English and Chinese Docusaurus builds.
- Behavior changed: No
- Does this need documentation: Yes
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant