Uploaded image for project: 'Cassandra'
  1. Cassandra
  2. CASSANDRA-17558

Add guardrail to disallow DROP or TRUNCATE TABLE commands for non superuser accounts

    XMLWordPrintableJSON

Details

    Description

      While this can also be accomplished via roles, there's value in having a cluster-wide "all role ban" on specific operations that operators can configure for clusters that have need of those settings.

      In this case, we want the ability to completely disallow DROP or TRUNCATE TABLE commands so users cannot inadvertently throw away data and operators don't have to runbook managing roles to ensure that this functionality doesn't leak through.

      Attachments

        Issue Links

          Activity

            People

              jmckenzie Josh McKenzie
              jmckenzie Josh McKenzie
              Josh McKenzie
              Aleksey Yeschenko
              Votes:
              0 Vote for this issue
              Watchers:
              4 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: