Details
Description
Several large enterprises have their groups in LDAP/AD nested within other groups. Since Ranger user sync currently only pulls in the immediate group, it is possible that some nested memberships might not be available for policy authoring. Hadoop user-group mapping already supports nested LDAP/AD groups for policy enforcement at the Ranger plugin.