Vamsi-klu commented on PR #18975: URL: https://github.com/apache/pinot/pull/18975#issuecomment-5349174298
Thanks for running the suites and for the revert checks. I agree the UI story should be in the release note in plain words: a table-scoped BasicAuth user can sign in and then hit 403 on /tables, /schemas, /instances, and /tenants. Denying those listings is safer than shipping an unfiltered cluster dump. Scope-filtered listings stay follow-up. The back-compat list and helm comment now also cover segment completion and v1 /auth/verify. I could not push the description edit to apache/pinot from this environment. When you post the replies, please also add those Backward-incompatible bullets and the RoleType / task-debug notes to the PR body. -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. To unsubscribe, e-mail: [email protected] For queries about this service, please contact Infrastructure at: [email protected] --------------------------------------------------------------------- To unsubscribe, e-mail: [email protected] For additional commands, e-mail: [email protected]
