Uploaded image for project: 'Apache Ozone'
  1. Apache Ozone
  2. HDDS-4944 Multi-Tenant Support in Ozone
  3. HDDS-6609

[MultiTenancy] Kerberos principal should be replaced with actual user

    XMLWordPrintableJSON

Details

    Description

      In many API outputs, the user name is printed as Kerberos Principal.

      Kerberos user with realm isn't an actual user and one might create an ozone admin with that user as per the console output.

      bash-4.2$ ozone tenant create testing
      2022-04-19 16:54:53,660 [main] INFO rpc.RpcClient: Creating Tenant: 'testing', with new volume: 'testing'
      PERMISSION_DENIED User 'testuser2/scm@EXAMPLE.COM' is not an Ozone admin. 

      Attachments

        Activity

          People

            smeng Siyao Meng
            ssulav Soumitra Sulav
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: