For a fresh install of MEP 6.1, a non-administrative user is prevented from installing hooks by default. For a minor version update (for example, MEP 6.0.0 to MEP 6.1.0 or MEP 5.0.1 to MEP 5.0.2), you need to modify the Hive configuration to prevent a malicious user from using Hive hooks to install malware on your MapR cluster.
mapr
user, which could represent a security vulnerability. To prevent a malicious user from using
Hive hooks to install malware on a MapR cluster, the cluster admin should add the following
properties to the default value of hive.conf.restricted.list in the
hive-site.xml file, and then restart HiveServer 2 (HS2):hive.exec.pre.hookshive.exec.post.hookshive.exec.failure.hookshive.exec.query.redactor.hooksAdding the properties prevents a non-admin user from installing hooks into Hive.