You are viewing a plain text version of this content. The canonical link for it is here.
Posted to dev@ambari.apache.org by "Scott C Gray (JIRA)" <ji...@apache.org> on 2015/12/08 17:03:10 UTC

[jira] [Created] (AMBARI-14269) Ambari views to utilize only open REST interfaces

Scott C Gray created AMBARI-14269:
-------------------------------------

             Summary: Ambari views to utilize only open REST interfaces 
                 Key: AMBARI-14269
                 URL: https://issues.apache.org/jira/browse/AMBARI-14269
             Project: Ambari
          Issue Type: Improvement
          Components: ambari-views
            Reporter: Scott C Gray


Currently Ambari supports a separation of duties between administration and end-user activities by allowing separate instances of Ambari for each.  As Ambari views are implemented today, the instance of Ambari hosting the views must, by necessity, run inside of the cluster as it access various components via direct RPC calls and, thus, could accidentally allow malicious access to services that were not intended for end users to access.  In addition, in this configuration, currently requires additional ports to be opened for access to the second Ambari instance.

If all Ambari views were restricted to only accessing cluster resources through open REST interfaces, then the "views instance" of Ambari could be isolated outside of the cluster itself and access the cluster only through Knox facilities.



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)