Overview

The Ranger ABFS plugin manages POSIX access control lists (ACLs) for Azure Data Lake Storage Gen2 (ADLS Gen2) by using the ABFS service type.

When you create, update, enable, disable, or delete an ABFS policy in Ranger Admin, Ranger translates the policy into ADLS access and default ACL entries. Ranger then applies the ACL entries by using the Azure Data Lake Storage API.

The Ranger ABFS plugin provides ACL synchronization from Ranger Admin. It is not a request-time authorization plugin installed on an Azure service.

Each Ranger ABFS service manages one storage account. To manage multiple storage accounts, create a separate Ranger ABFS service for each storage account.

The resource hierarchy is:

Storage account └── Container (ADLS file system) └── Relative path


  Last updated
On This Page
Overview