You are viewing a plain text version of this content. The canonical link for it is here.
Posted to commits@ranger.apache.org by ab...@apache.org on 2017/03/15 23:11:10 UTC
ranger git commit: RANGER-1460: Hdfs authorizer uses hadoop-acls to
allow access with one allowing tag policy and no resource policy
Repository: ranger
Updated Branches:
refs/heads/master 75f8f1d0b -> 942f630ba
RANGER-1460: Hdfs authorizer uses hadoop-acls to allow access with one allowing tag policy and no resource policy
Project: http://git-wip-us.apache.org/repos/asf/ranger/repo
Commit: http://git-wip-us.apache.org/repos/asf/ranger/commit/942f630b
Tree: http://git-wip-us.apache.org/repos/asf/ranger/tree/942f630b
Diff: http://git-wip-us.apache.org/repos/asf/ranger/diff/942f630b
Branch: refs/heads/master
Commit: 942f630ba672452c93de684fc156754f7c0fe83f
Parents: 75f8f1d
Author: Abhay Kulkarni <ak...@hortonworks.com>
Authored: Wed Mar 15 15:56:37 2017 -0700
Committer: Abhay Kulkarni <ak...@hortonworks.com>
Committed: Wed Mar 15 15:56:37 2017 -0700
----------------------------------------------------------------------
.../apache/ranger/plugin/policyengine/RangerPolicyEngineImpl.java | 3 +++
1 file changed, 3 insertions(+)
----------------------------------------------------------------------
http://git-wip-us.apache.org/repos/asf/ranger/blob/942f630b/agents-common/src/main/java/org/apache/ranger/plugin/policyengine/RangerPolicyEngineImpl.java
----------------------------------------------------------------------
diff --git a/agents-common/src/main/java/org/apache/ranger/plugin/policyengine/RangerPolicyEngineImpl.java b/agents-common/src/main/java/org/apache/ranger/plugin/policyengine/RangerPolicyEngineImpl.java
index 0c9c0fa..508ef93 100644
--- a/agents-common/src/main/java/org/apache/ranger/plugin/policyengine/RangerPolicyEngineImpl.java
+++ b/agents-common/src/main/java/org/apache/ranger/plugin/policyengine/RangerPolicyEngineImpl.java
@@ -713,6 +713,9 @@ public class RangerPolicyEngineImpl implements RangerPolicyEngine {
break; // Break out of policy-evaluation loop
}
}
+ if (result.getIsAllowed()) {
+ result.setIsAccessDetermined(true);
+ }
}
}