Uploaded image for project: 'Ranger'
  1. Ranger
  2. RANGER-3524

Bug in KeyAuthorizationKeyProvider.checkAccess

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Resolved
    • Major
    • Resolution: Not A Bug
    • 2.2.0
    • None
    • kms
    • None

    Description

      In KMS KeyAuthorizationKeyProvider.checkAccess, it checks whether the ACL is present first for the requested operation.

       

      But the code instead check whether ACL is present for operation KeyOpType.MANAGEMENT: https://github.com/apache/ranger/blob/ranger-2.2/kms/src/main/java/org/apache/hadoop/crypto/key/kms/server/KeyAuthorizationKeyProvider.java#L154

       

       

      Attachments

        Activity

          People

            Unassigned Unassigned
            songhuicheng Huicheng Song
            Votes:
            0 Vote for this issue
            Watchers:
            3 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: