Uploaded image for project: 'Ranger'
  1. Ranger
  2. RANGER-2474

Policy version and details in access audits wrong when deny condition added to policy

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Resolved
    • Major
    • Resolution: Fixed
    • 2.0.0
    • 2.0.0
    • Ranger
    • None

    Description

      Scenario:
      Create a ranger hive policy for a test table for select access - version1
      Perform select - operation successful (done for impala)
      Validate access audits - policy version is 1, clicking on policyid shows details of policy at version1
      Edit the policy to include and an additional policy item under allow or a new condition under allow exception or deny exception (not under deny)
      Perform operation
      Validate access audits - policy version is 2, clicking on policyid shows details of policy at version2
      Edit the policy to include a deny condition
      Perform operation
      Validate access audits - policy version is 1, clicking on policyid shows details of policy at version1 though enforcement happens as per policy version3

      Note - Versioning is back to normal when deny condition is removed

      Attachments

        Activity

          People

            rmani Ramesh Mani
            suja suja s
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: