Uploaded image for project: 'Ranger'
  1. Ranger
  2. RANGER-3816

update getResourceACLs() API to handle macros in resource names

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Resolved
    • Major
    • Resolution: Fixed
    • None
    • 3.0.0, 2.4.0
    • plugins
    • None

    Description

      getResourceACL() method returns all permissions specified for a given resource in Ranger policies. In case of policies with macros in resource names, like test_{USER}, /department/${{USER.dept}}, getResourceACLs() should return ACCESS_CONDITIONAL, since the access depends of user/user/attributes. Currently getResourceACLs() doesn't include users/groups/roles listed in such policies. This should be fixed to have these users/groups/roles as having conditional access.

      Attachments

        1. RANGER-3816.patch
          21 kB
          Madhan Neethiraj

        Activity

          People

            madhan Madhan Neethiraj
            madhan Madhan Neethiraj
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: