[ 
https://issues.apache.org/jira/browse/ATLAS-2765?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16523732#comment-16523732
 ] 

ASF subversion and git services commented on ATLAS-2765:
--------------------------------------------------------

Commit eb895a62fde263ecf84da3a476594ca75a23022b in atlas's branch 
refs/heads/master from [[email protected]]
[ https://git-wip-us.apache.org/repos/asf?p=atlas.git;h=eb895a6 ]

ATLAS-2765: updated authorization model to scrub search-results (clear 
entity-attributes, classifications) for entities the user doesn't have read 
access to


> Authorization enhancements to scrub search results
> --------------------------------------------------
>
>                 Key: ATLAS-2765
>                 URL: https://issues.apache.org/jira/browse/ATLAS-2765
>             Project: Atlas
>          Issue Type: Bug
>          Components:  atlas-core
>    Affects Versions: 1.0.0
>            Reporter: Madhan Neethiraj
>            Assignee: Madhan Neethiraj
>            Priority: Major
>             Fix For: 1.1.0, 2.0.0
>
>         Attachments: ATLAS-2765.patch
>
>
> Fine-grained authorization introduced in ATLAS-2459 allows setting up access 
> controls at entity instance level - based on 
> entity-type/entity-id/entity-classifications. The same access controls should 
> be applied to search-results as well, to ensure that entity-attributes and 
> entity-classifications are scrubbed from the search-result for entities on 
> which the user doesn't have entity-read access.



--
This message was sent by Atlassian JIRA
(v7.6.3#76005)

Reply via email to