beeflyme opened a new issue #5897:
URL: https://github.com/apache/dolphinscheduler/issues/5897


   *For better global communication, please give priority to using English 
description, thx! *
   
   *Please review 
https://dolphinscheduler.apache.org/en-us/community/development/issue.html when 
describe an issue.*
   
   **Describe the question**
   all user have all datasource permission,lead data security issues.
   
   **What are the current deficiencies and the benefits of improvement**
   to slove the data safety problem.
   
   **Which version of DolphinScheduler:**
    -[1.3.6-preview]
   
   **Describe alternatives you've considered**
   1. for example there are three users userA,userB、userC using a 
DolphinScheduler plantform.
      we can separate them with three different projects.
   2. but one user(such as A) can use all datasource include other 
person/project(B\C) using.
   3.  if  A in fact don't have  userB's  datasource access perm, but he still 
can using  datasource userB created.
       then, A can download all tables by datax/sqoop using datasource B 
created.
       that lead data security issues.
   
   


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]


Reply via email to