Details
-
Bug
-
Status: Resolved
-
Major
-
Resolution: Duplicate
-
1.4.0
-
None
Description
This is related to https://issues.apache.org/jira/browse/SENTRY-240. Currently we allow any role to be set, but when authorizing we make an intersection of current active roles and granted privileges. Instead it would be better to restrict setting roles which a user is not granted.
Attachments
Issue Links
- duplicates
-
SENTRY-305 SHOW CURRENT ROLES shouldn't require admin privileges
- Resolved