Abhay Kulkarni created RANGER-1460:
--------------------------------------
Summary: Hdfs authorizer uses hadoop-acls to allow access with one
allowing tag policy and no resource policy
Key: RANGER-1460
URL: https://issues.apache.org/jira/browse/RANGER-1460
Project: Ranger
Issue Type: Bug
Components: plugins
Affects Versions: 0.7.0
Reporter: Abhay Kulkarni
Assignee: Abhay Kulkarni
Fix For: master, 0.7.1
If there is one tag policy which allows access to HDFS resource and if there
are no resource policies for HDFS, then authorization falls back to hadoop
acls. In such cases, Ranger authorizer should allow access to the resource
without falling back to hadoop acls, as tag policy has allowed access and there
is no resource policy.
--
This message was sent by Atlassian JIRA
(v6.3.15#6346)