Abhay Kulkarni created RANGER-1460:
--------------------------------------

             Summary: Hdfs authorizer uses hadoop-acls to allow access with one 
allowing tag policy and no resource policy
                 Key: RANGER-1460
                 URL: https://issues.apache.org/jira/browse/RANGER-1460
             Project: Ranger
          Issue Type: Bug
          Components: plugins
    Affects Versions: 0.7.0
            Reporter: Abhay Kulkarni
            Assignee: Abhay Kulkarni
             Fix For: master, 0.7.1


If there is one tag policy which allows access to HDFS resource and if there 
are no resource policies for HDFS, then authorization falls back to hadoop 
acls. In such cases, Ranger authorizer should allow access to the resource 
without falling back to hadoop acls, as tag policy has allowed access and there 
is no resource policy.



--
This message was sent by Atlassian JIRA
(v6.3.15#6346)

Reply via email to