You are viewing a plain text version of this content. The canonical link for it is here.
Posted to common-commits@hadoop.apache.org by ey...@apache.org on 2011/10/05 02:33:54 UTC

svn commit: r1179024 - /hadoop/common/branches/branch-0.20-security-205/conf/mapred-queue-acls.xml

Author: eyang
Date: Wed Oct  5 00:33:53 2011
New Revision: 1179024

URL: http://svn.apache.org/viewvc?rev=1179024&view=rev
Log:
HADOOP-7707. Added toggle for dfs.support.append, webhdfs and hadoop proxy
user to setup config script. (Arpit Gupta via Eric Yang)

Added:
    hadoop/common/branches/branch-0.20-security-205/conf/mapred-queue-acls.xml

Added: hadoop/common/branches/branch-0.20-security-205/conf/mapred-queue-acls.xml
URL: http://svn.apache.org/viewvc/hadoop/common/branches/branch-0.20-security-205/conf/mapred-queue-acls.xml?rev=1179024&view=auto
==============================================================================
--- hadoop/common/branches/branch-0.20-security-205/conf/mapred-queue-acls.xml (added)
+++ hadoop/common/branches/branch-0.20-security-205/conf/mapred-queue-acls.xml Wed Oct  5 00:33:53 2011
@@ -0,0 +1,49 @@
+<?xml version="1.0"?>
+<?xml-stylesheet type="text/xsl" href="configuration.xsl"?>
+
+<!-- This is a template file for queue acls configuration properties -->
+
+<configuration>
+
+<property>
+  <name>mapred.queue.default.acl-submit-job</name>
+  <value> </value>
+  <description> Comma separated list of user and group names that are allowed
+    to submit jobs to the 'default' queue. The user list and the group list
+    are separated by a blank. For e.g. user1,user2 group1,group2. 
+    If set to the special value '*', it means all users are allowed to 
+    submit jobs. If set to ' '(i.e. space), no user will be allowed to submit
+    jobs.
+
+    It is only used if authorization is enabled in Map/Reduce by setting the
+    configuration property mapred.acls.enabled to true.
+
+    Irrespective of this ACL configuration, the user who started the cluster and
+    cluster administrators configured via
+    mapreduce.cluster.administrators can submit jobs.
+  </description>
+</property>
+
+<property>
+  <name>mapred.queue.default.acl-administer-jobs</name>
+  <value> </value>
+  <description> Comma separated list of user and group names that are allowed
+    to view job details, kill jobs or modify job's priority for all the jobs
+    in the 'default' queue. The user list and the group list
+    are separated by a blank. For e.g. user1,user2 group1,group2. 
+    If set to the special value '*', it means all users are allowed to do 
+    this operation. If set to ' '(i.e. space), no user will be allowed to do
+    this operation.
+
+    It is only used if authorization is enabled in Map/Reduce by setting the
+    configuration property mapred.acls.enabled to true.
+
+    Irrespective of this ACL configuration, the user who started the cluster and
+    cluster administrators configured via
+    mapreduce.cluster.administrators can do the above operations on all the jobs
+    in all the queues. The job owner can do all the above operations on his/her
+    job irrespective of this ACL configuration.
+  </description>
+</property>
+
+</configuration>