Re: Drill Session ID between Nodes

2017-06-23 Thread Keys Botzum
- there may be other state issues beyond just authentication. Keys ___ Keys Botzum Distinguished Engineer, Field Engineering kbot...@maprtech.com<mailto:kbot...@maprtech.com> 443-718-0098 MapR Technologies http://www.mapr.com On Jun 23, 2017, at 11:33 AM, John Omern

Re: Drill Session ID between Nodes

2017-06-23 Thread Keys Botzum
with HTTPS even though we use IP address by default. Keys ___ Keys Botzum Distinguished Engineer, Field Engineering kbot...@maprtech.com<mailto:kbot...@maprtech.com> 443-718-0098 MapR Technologies http://www.mapr.com On Jun 23, 2017, at 10:22 AM, John Omern

Re: Drill Session ID between Nodes

2017-06-23 Thread Keys Botzum
ill4.mydrill.corp.com>, this is bad with wildcards: drill1, drill2, drill3, drill4 Keys ___ Keys Botzum MapR Technologies On Jun 22, 2017, at 8:24 PM, John Omernik <j...@omernik.com<mailto:j...@omernik.com>> wrote: Would there be interest in finding a way to

Re: Bad links in Custom SSL Setup Docs

2016-11-10 Thread Keys Botzum
I made some comments in the JIRA that you may find helpful. I also included an example of getting a cert from godaddy. The example is for a MapR cluster but the steps will be essentially the same for Drill. I hope that helps. Keys ___ Keys Botzum Senior Principal

Re: Per user authorization

2016-07-29 Thread Keys Botzum
there for such a feature. Having worked with such systems in the past, I'll just caution that there are deep complexities around managing per user credentials. Keys ___ Keys Botzum Senior Principal Technologist kbot...@maprtech.com <mailto:kbot...@maprtech.com> 443-718-009

Re: Per user authorization

2016-07-29 Thread Keys Botzum
That paper is dated. DB2 added support after I wrote it. Keys ___ Keys Botzum Senior Principal Technologist kbot...@maprtech.com <mailto:kbot...@maprtech.com> 443-718-0098 MapR Technologies http://www.mapr.com <http://www.mapr.com/> > On Jul 29, 2016, at

Re: Per user authorization

2016-07-29 Thread Keys Botzum
be created and shared amongst users. Basically I can create a view on data I own and share that view with others that can't see the underlying data but can see the view. Drill views: http://drill.apache.org/docs/create-view-command/ Keys ___ Keys Botzum Senior Principal

Re: User Impersonation

2016-07-01 Thread Keys Botzum
have more complex authorization in the higher level engine and not rely on the datastore. I'm not a fan of that because it makes bypass a little too easy for my taste, but life is full of complex tradeoffs. Keys ___ Keys Botzum Senior Principal Technologist kbot...@ma

Re: [DISCUSS] New Feature: Drill Client Impersonation

2016-02-22 Thread Keys Botzum
sign needs to consider the scale. I'll also add that much further in the future if/when Drill takes on more operational types of access that 50 connections will rise to a much larger number. Keys ___ Keys Botzum Senior Principal Technologist kbot...@maprtech.com &l

Re: [DISCUSS] New Feature: Drill Client Impersonation

2016-02-21 Thread Keys Botzum
A good suggestion. Pooling is going to important for performance. Keys ___ Keys Botzum Senior Principal Technologist kbot...@maprtech.com <mailto:kbot...@maprtech.com> 443-718-0098 MapR Technologies http://www.mapr.com <http://www.mapr.com/> > On Feb

Re: [DISCUSS] New Feature: Drill Client Impersonation

2016-02-19 Thread Keys Botzum
. Keys ___ Keys Botzum Senior Principal Technologist kbot...@maprtech.com <mailto:kbot...@maprtech.com> 443-718-0098 MapR Technologies http://www.mapr.com <http://www.mapr.com/> > On Feb 19, 2016, at 4:49 PM, Sudheesh Katkam <skat...@maprtech.co

Re: Sqlline Tricks

2016-02-03 Thread Keys Botzum
Did you already open a JIRA on this? https://issues.apache.org/jira/browse/DRILL-3880 Keys ___ Keys Botzum Senior Principal Technologist kbot...@maprtech.com <mailto:kbot...@maprtech.com> 443-718-0098 MapR Technologies http://www.mapr.com <http://www

Re: Sqlline Tricks

2016-02-03 Thread Keys Botzum
They are different although interestingly I think some of this has been fixed per what others here have posted. If it were me I'd clarify/enhance the JIRA based on what you've just learned but others may feel differently. Keys ___ Keys Botzum Senior Principal

Re: Rest & web authentication

2015-12-07 Thread Keys Botzum
I think this answers your question (the answer is yes according to the docs): https://drill.apache.org/docs/configuring-web-console-and-rest-api-security/ <https://drill.apache.org/docs/configuring-web-console-and-rest-api-security/> Keys ___ Keys

Re: Security with Storage Plugins

2015-10-26 Thread Keys Botzum
Identity assertion from drill via jdbc to the underlying database is needed. It's been years since I looked at this but most databases have a way of doing this. The technique was unique to each database in the past. Keys ___ Keys Botzum Senior Principal Technologist