cdh集群通过sentry来管理kerberos账户权限
SELECT sr.ROLE_NAME ,sdp.SERVER_NAME,sdp.DB_NAME ,sdp.TABLE_NAME,sdp.COLUMN_NAME,sdp.`ACTION`
from sentry.SENTRY_DB_PRIVILEGE sdp
inner join sentry.SENTRY_ROLE_DB_PRIVILEGE_MAP srdp on sdp.DB_PRIVILEGE_ID=srdp.DB_PRIVILEGE_ID
inner join sentry.SENTRY_ROLE sr on sr.ROLE_ID = srdp.ROLE_ID
-- WHERE sr.ROLE_NAME in ('crm_superset_role','scm_superset_role');
权限释放
REVOKE all on server server1 from ROLE impala_role;
REVOKE role impala_role from group impala;
drop role user3_role;