[ 
https://issues.apache.org/jira/browse/NIFI-3535?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=15902260#comment-15902260
 ] 

Puspendu Banerjee commented on NIFI-3535:
-----------------------------------------

[[email protected]] Could you please explain {quote}use user account 
which was used during nifi authentication{quote}.
If you have meant that the UI user, then someone must log-in to NiFi, which 
might not be the case for production/server boxes.
In stead of that, I would recommend you to run NiFi on Docker like container.


> Use keytab for local filesystem
> -------------------------------
>
>                 Key: NIFI-3535
>                 URL: https://issues.apache.org/jira/browse/NIFI-3535
>             Project: Apache NiFi
>          Issue Type: Improvement
>          Components: Core Framework
>    Affects Versions: 1.1.1, 1.0.1
>         Environment: ie redhat
>            Reporter: Sunile Manjee
>            Priority: Critical
>              Labels: authentication, kerbeos, security
>
> For enterprises which require strict access control to local file systems, 
> the requirement is to enable nifi processors which access local file system 
> to use keytab or another process to use user account which was used during 
> nifi authentication.   without such enforcement all users within a restricted 
> group have access to full local file system via nifi processor.  



--
This message was sent by Atlassian JIRA
(v6.3.15#6346)

Reply via email to