You are viewing a plain text version of this content. The canonical link for it is here.
Posted to commits@ranger.apache.org by ab...@apache.org on 2022/03/11 23:11:39 UTC

[ranger] branch master updated: RANGER-3663: RangerBizUtil.checkAdminAccess() should return false if user-session is not available

This is an automated email from the ASF dual-hosted git repository.

abhay pushed a commit to branch master
in repository https://gitbox.apache.org/repos/asf/ranger.git


The following commit(s) were added to refs/heads/master by this push:
     new e6bb82b  RANGER-3663: RangerBizUtil.checkAdminAccess() should return false if user-session is not available
e6bb82b is described below

commit e6bb82b8c192707a7f60bc190819a17ee335a3a0
Author: Abhay Kulkarni <ab...@apache.org>
AuthorDate: Fri Mar 11 15:11:29 2022 -0800

    RANGER-3663: RangerBizUtil.checkAdminAccess() should return false if user-session is not available
---
 .../src/main/java/org/apache/ranger/biz/RangerBizUtil.java     | 10 ++--------
 1 file changed, 2 insertions(+), 8 deletions(-)

diff --git a/security-admin/src/main/java/org/apache/ranger/biz/RangerBizUtil.java b/security-admin/src/main/java/org/apache/ranger/biz/RangerBizUtil.java
index 1ec1df0..6237c0c 100644
--- a/security-admin/src/main/java/org/apache/ranger/biz/RangerBizUtil.java
+++ b/security-admin/src/main/java/org/apache/ranger/biz/RangerBizUtil.java
@@ -1537,14 +1537,8 @@ public class RangerBizUtil {
 
 	public boolean checkAdminAccess() {
 		UserSessionBase currentUserSession = ContextUtil.getCurrentUserSession();
-		if (currentUserSession != null) {
-			return currentUserSession.isUserAdmin();
-		} else {
-			VXResponse vXResponse = new VXResponse();
-			vXResponse.setStatusCode(HttpServletResponse.SC_UNAUTHORIZED);
-			vXResponse.setMsgDesc("Bad Credentials");
-			throw restErrorUtil.generateRESTException(vXResponse);
-		}
+
+		return currentUserSession != null && currentUserSession.isUserAdmin();
 	}
 
 }