Repository: incubator-ranger Updated Branches: refs/heads/tag-policy 588881d6c -> 91f19321d
RANGER-680 : Default policies for KMS repo Signed-off-by: Velmurugan Periasamy <[email protected]> (cherry picked from commit 18e63978666eba70b67519501cc7871b3a8c79d7) Project: http://git-wip-us.apache.org/repos/asf/incubator-ranger/repo Commit: http://git-wip-us.apache.org/repos/asf/incubator-ranger/commit/f294d68e Tree: http://git-wip-us.apache.org/repos/asf/incubator-ranger/tree/f294d68e Diff: http://git-wip-us.apache.org/repos/asf/incubator-ranger/diff/f294d68e Branch: refs/heads/tag-policy Commit: f294d68e3516faae37a6b7fde0bcec1db53d2a95 Parents: 588881d Author: Gautam Borad <[email protected]> Authored: Tue Oct 6 13:06:46 2015 +0530 Committer: Madhan Neethiraj <[email protected]> Committed: Sat Nov 21 09:40:55 2015 -0800 ---------------------------------------------------------------------- .../src/main/java/org/apache/ranger/biz/ServiceDBStore.java | 8 -------- 1 file changed, 8 deletions(-) ---------------------------------------------------------------------- http://git-wip-us.apache.org/repos/asf/incubator-ranger/blob/f294d68e/security-admin/src/main/java/org/apache/ranger/biz/ServiceDBStore.java ---------------------------------------------------------------------- diff --git a/security-admin/src/main/java/org/apache/ranger/biz/ServiceDBStore.java b/security-admin/src/main/java/org/apache/ranger/biz/ServiceDBStore.java index ced2f51..0ee3595 100644 --- a/security-admin/src/main/java/org/apache/ranger/biz/ServiceDBStore.java +++ b/security-admin/src/main/java/org/apache/ranger/biz/ServiceDBStore.java @@ -1928,14 +1928,6 @@ public class ServiceDBStore extends AbstractServiceStore { users.add(vXUser.getName()); policyItem.setUsers(users); - // Default policy for KMS should grant all access to 'public' - long serviceType = createdService.getType() == null ? -1 : createdService.getType(); - if(serviceType == EmbeddedServiceDefsUtil.instance().getKmsServiceDefId()) { - List<String> groups = new ArrayList<String>(); - groups.add(RangerConstants.GROUP_PUBLIC); - policyItem.setGroups(groups); - } - List<XXAccessTypeDef> accessTypeDefs = daoMgr.getXXAccessTypeDef().findByServiceDefId(createdService.getType()); List<RangerPolicyItemAccess> accesses = new ArrayList<RangerPolicyItemAccess>(); for(XXAccessTypeDef accessTypeDef : accessTypeDefs) {
