ranger配置
- 准备好jks秘钥文件和密码,以及文件别名
- 修改配置文件
# ranger settings
ranger.service.http.enabled=false
policymgr_external_url=https://RANGER_HOST:6182
# ranger-admin-site
ranger.service.https.attrib.ssl.enabled = true
ranger.service.https.attrib.keystore.keyalias = [秘钥别名]
ranger.https.attrib.keystore.file = [jks秘钥路径]
ranger.service.https.attrib.keystore.pass = [秘钥对应密码]
ranger.truststore.file = [jks秘钥路径]
ranger.truststore.password = [秘钥对应密码]
# atlas-tagsync-ssl
xasecure.policymgr.clientssl.keystore = [jks秘钥路径]
xasecure.policymgr.clientssl.keystore.password = [秘钥对应密码]
xasecure.policymgr.clientssl.truststore.credential.file=[jks秘钥路径]
xasecure.policymgr.clientssl.truststore.password= [秘钥对应密码]
# ranger-tagsync-policymgr-ssl
xasecure.policymgr.clientssl.keystore=[jks秘钥路径]
xasecure.policymgr.clientssl.keystore.password= [秘钥对应密码]
xasecure.policymgr.clientssl.truststore=[jks秘钥路径]
xasecure.policymgr.clientssl.truststore.password= [秘钥对应密码]
# ranger-ugsync-site
ranger.usersync.keystore.file=[jks秘钥路径]
ranger.usersync.keystore.password=[秘钥对应密码]
ranger.usersync.truststore.file=[jks秘钥路径]
ranger.usersync.truststore.password=[秘钥对应密码]
rangerkms配置
- 修改配置文件
# ranger-kms-policymgr-ssl
xasecure.policymgr.clientssl.keystore=[jks秘钥路径]
xasecure.policymgr.clientssl.keystore.password=[秘钥对应密码]
xasecure.policymgr.clientssl.truststore=[jks秘钥路径]
xasecure.policymgr.clientssl.truststore.password=[秘钥对应密码]
# ranger-kms-site
ranger.service.https.attrib.keystore.file=[jks秘钥路径]
ranger.service.https.attrib.keystore.keyalias=[秘钥别名]
ranger.service.https.attrib.keystore.pass=[秘钥对应密码]
ranger.service.https.attrib.ssl.enabled=true