Prerequisites to Create a Microsoft Azure Data Lake Storage Gen2 Connection

Prerequisites to Create a Microsoft Azure Data Lake Storage Gen2 Connection

Setting Permissions for Microsoft Azure Data Lake Store Gen2 (Access Control List)

Setting Permissions for Microsoft Azure Data Lake Store Gen2 (Access Control List)

Set the Access Control List to provide permissions to Microsoft Azure Data Lake Store Gen2. To access objects from an HDI 4.0 Kerberised cluster, configure the impersonation user details into your Microsoft Azure Data Lake Storage Gen2 account. Provide Contributor role and full access, for the container used in the internal storage account of the HDInsight Data Lake Storage Gen2 cluster, to the impersonation user.
  1. Log in to the Azure portal.
  2. In the
    Storage Accounts
    section, select the Microsoft Azure Data Lake Storage Gen2 account that you created.
  3. Click
    Storage Explorer
    CONTAINERS
    .
  4. Select the file system that you created and then click
    Manage Access
    .
    The
    Manage Access
    dialog box appears.
  5. In the
    Permission for:
    section, select both the
    Access
    and
    Default
    check boxes. Enable the
    Read
    ,
    Write
    , and
    Execute
    permissions.
  6. In the
    Add user or group
    field, enter the Azure Active Directory application
    Object ID
    and click
    Add
    .
    For information about getting the
    Object ID
    , see Creating an Azure Active Directory Application.
    If you enter an Azure Active Directory group name, all the users within the group will have the same permissions.
  7. Click
    Save
    .
When you set the permissions of a file system, all the folders within that file system have the same permissions. However, if you create a folder within a file system before setting the permissions of the file system, you must perform the same steps to set the Access Control List for that folder.

0 COMMENTS

We’d like to hear from you!