Uploaded image for project: 'Ambari'
  1. Ambari
  2. AMBARI-18023

Enforce granular role-based access control for log search functions

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Resolved
    • Critical
    • Resolution: Fixed
    • 2.4.0
    • 2.4.0
    • ambari-server
    • None

    Description

      Enforce granular role-based access control for log search functions.

      Users must have the SERVICE.VIEW_OPERATIONAL_LOGS authorization in order to perform log search functions.

      The following REST API entry points are affected:

      GET /api/v1/clusters/:CLUSTER_NAME/host_components

      • The LogSearch-related data is to be filtered out if the user does not have authorization to view it

      GET /api/v1/clusters/:CLUSTER_NAME/logging/searchEngine

      • Access is to be denied if the user does does not have authorization to view LogSearch-related data

      Attachments

        1. AMBARI-18023_branch-2.4_01.patch
          45 kB
          Robert Levas
        2. AMBARI-18023_trunk_01.patch
          45 kB
          Robert Levas

        Issue Links

          Activity

            People

              rlevas Robert Levas
              rlevas Robert Levas
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: