Re: Error when revoking user permissions

2018-05-25 Thread Li Yang
Thanks for reporting Jose.

It sounds like a bug. Please open a JIRA with reproduce steps.

Cheers
Yang

On Wed, May 16, 2018 at 7:07 PM, José Manuel Carral <
josemanuel.car...@stratebi.com> wrote:

> Hello.
>
> I've just created a new Kylin user called "external_user" and I've given
> him management permissions on a Kylin project ("Test_project"). After that,
> I decided to revoke his permissions but he can still have access to the
> project.
>
> I´ve tried to reload the Kylin metadata and to restart Kylin in order to
> remove his permissions but nothing have worked. I have checked that this
> user maintains the last permissions given to him. In this case now he has
> query access (which is the last permission that i gave him before revoking
> all permissions).
>
> If we check the "manage project" interface, we can see (when logging on
> with "admin" user and also when logging on with this "external_user") the
> project ACL which is the following now:
> Name
> Type Access
> ADMIN User ADMIN
> ROLE_ANALYST Role QUERY
>
> The "external_user" does not appear in this list. However it still has
> query access to the project (as it was the last permission i gave him).
>
> So, any ideas about why is this happening? Thank you in advance!
>
> Kind regards,
>
> Jose M.
>


Error when revoking user permissions

2018-05-16 Thread José Manuel Carral

Hello.

I've just created a new Kylin user called "external_user" and I've given 
him management permissions on a Kylin project ("Test_project"). After 
that, I decided to revoke his permissions but he can still have access 
to the project.


I´ve tried to reload the Kylin metadata and to restart Kylin in order to 
remove his permissions but nothing have worked. I have checked that this 
user maintains the last permissions given to him. In this case now he 
has query access (which is the last permission that i gave him before 
revoking all permissions).


If we check the "manage project" interface, we can see (when logging on 
with "admin" user and also when logging on with this "external_user") 
the project ACL which is the following now:


Name
TypeAccess
ADMIN   UserADMIN
ROLE_ANALYSTRoleQUERY

The "external_user" does not appear in this list. However it still has 
query access to the project (as it was the last permission i gave him).


So, any ideas about why is this happening? Thank you in advance!

Kind regards,

Jose M.