Details
-
Improvement
-
Status: Patch Available
-
Minor
-
Resolution: Unresolved
-
3.2.0
-
None
-
None
-
Patch
Description
After some confusion of my own, in particular with "mapreduce.job.acl-view-job," I have looked over the AccessControlList implementation and cleaned it up and clarified a few points.
1) I added tests to demonstrate the existing behavior of including an asterisk in either the username or the group field, it overrides everything and allows all access.
"user1,user2,user3 *" = all access
"* group1,group2" = all access
"* *" = all access
"* " = all access
" *" = all access
2) General clean-up and simplification
Attachments
Attachments
Issue Links
- is related to
-
HADOOP-15836 Review of AccessControlList
- Patch Available