Uploaded image for project: 'Ranger'
  1. Ranger
  2. RANGER-558

Hbase plugin: unless user has READ access at some level under the table/family being accessed (via scan/get) authorizer should throw an exception and audit

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Resolved
    • Major
    • Resolution: Fixed
    • 0.5.0
    • 0.5.1
    • None
    • None

    Description

      Authorizer returns 0 rows today if user has some other type of access (say WRITE) to a column under the table being requested. Further, such attempts are not audited as a denial. This behavior is at odds with that of the hbase standard authorizer. Both of these should be fixed.

      Attachments

        Activity

          People

            alok Alok Lal
            alok Alok Lal
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: