You are viewing a plain text version of this content. The canonical link for it is here.
Posted to issues@ozone.apache.org by "Sumit Agrawal (Jira)" <ji...@apache.org> on 2023/02/28 08:14:00 UTC

[jira] [Commented] (HDDS-7697) Quotas should only be able to be set and cleared by Admin

    [ https://issues.apache.org/jira/browse/HDDS-7697?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17694413#comment-17694413 ] 

Sumit Agrawal commented on HDDS-7697:
-------------------------------------

Hi [~NeilJoshi] [~sammichen] ,

I have shared doc where some change in permission handling for Native ACL is required to be more close to Ranger permission,

And for this specific fix for Native ACL, bucket property change is allowed only by owner and admin in Native ACL.

 

Please share your view points if this is ok...

 

> Quotas should only be able to be set and cleared by Admin 
> ----------------------------------------------------------
>
>                 Key: HDDS-7697
>                 URL: https://issues.apache.org/jira/browse/HDDS-7697
>             Project: Apache Ozone
>          Issue Type: Sub-task
>            Reporter: Neil Joshi
>            Assignee: Sumit Agrawal
>            Priority: Major
>         Attachments: ACL comparision for Ranger and Native ACL.docx
>
>
> With access control enabled, native & ranger authorizer, any user that has access to volume or bucket can set and clear quotas.  It is expected that only admins can set and clear quotas.  



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

---------------------------------------------------------------------
To unsubscribe, e-mail: issues-unsubscribe@ozone.apache.org
For additional commands, e-mail: issues-help@ozone.apache.org