[
https://issues.apache.org/jira/browse/KYLIN-2621?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=16221595#comment-16221595
]
Wang Ken commented on KYLIN-2621:
---------------------------------
The fix is a little problematic and will cause regression issue. There could be
some other Role groups in the LDAP, the current fix will totally ignore them.
> Fix issue on mapping LDAP group to the admin group
> --------------------------------------------------
>
> Key: KYLIN-2621
> URL: https://issues.apache.org/jira/browse/KYLIN-2621
> Project: Kylin
> Issue Type: Bug
> Affects Versions: v2.1.0
> Reporter: peng.jianhua
> Assignee: peng.jianhua
> Labels: patch
> Fix For: v2.1.0
>
> Attachments:
> 0001-KYLIN-2621-The-user-of-the-LDAP-group-named-admin-al.patch
>
>
> The LDAP group named "admin" always has ROLE_ADMIN permission, even if
> "kylin.security.acl.admin-role" is set to another group.
--
This message was sent by Atlassian JIRA
(v6.4.14#64029)