Details
-
Sub-task
-
Status: Open
-
Major
-
Resolution: Unresolved
-
None
-
None
-
None
Description
The service authorization can be specified via hadoop-policy.xml for different services(protocols) using ACLS ( list of users and groups) . The other subtasks will improve the standard behavior.
In some case, further special handling is required to restrict access based on few other external characteristics of the user for special clusters. Such special authorization requirements can be met if it is possible to plugin authorization mechanisms at this point.
Attachments
Attachments
Issue Links
- depends upon
-
HADOOP-10651 Add ability to restrict service access using IP addresses and hostnames
- Closed