Title
Page icon
Create new category
Edit page index title
Edit category
Edit link
Configure the Ranger ABFS Service
Create a Ranger ABFS service for the Azure storage account.
In the Ranger UI, go to Service Manager > ABFS Service.
Click + to create a service.
Configure the following properties:
Property | Description |
|---|---|
| Microsoft Entra object ID to add to the generated default policy with read and list access. |
| Storage account name without |
| Microsoft Entra directory (tenant) ID. |
| Application (client) ID of the Microsoft Entra application. Azure CLI also returns this value as |
| Client secret Value. Do not use the Secret ID. |
| Container used for connection testing and default policy configuration. |
Specify Ranger users and groups in ABFS policies as Microsoft Entra object IDs in GUID format. The plugin validates the GUID format and uses the value directly as the ACL entity ID. Invalid or non-GUID principals are skipped or can cause the operation to fail.
Test the service connection.
Verify that the connection succeeds.
Save the service.
Ranger creates a default policy with the default Azure ACL permissions for all containers in the storage account.