ambari-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Dmitry Lysnichenko (JIRA)" <j...@apache.org>
Subject [jira] [Updated] (AMBARI-15299) Absent validation of of stack_version id during API request to deeper entities
Date Fri, 04 Mar 2016 13:52:40 GMT

     [ https://issues.apache.org/jira/browse/AMBARI-15299?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]

Dmitry Lysnichenko updated AMBARI-15299:
----------------------------------------
    Affects Version/s: 2.4.0

> Absent validation of of stack_version id during API request to deeper entities
> ------------------------------------------------------------------------------
>
>                 Key: AMBARI-15299
>                 URL: https://issues.apache.org/jira/browse/AMBARI-15299
>             Project: Ambari
>          Issue Type: Bug
>          Components: ambari-server
>    Affects Versions: 2.4.0
>            Reporter: Dmitry Lysnichenko
>            Assignee: Dmitry Lysnichenko
>             Fix For: 2.4.0
>
>         Attachments: AMBARI-15299.patch
>
>
> Request:
> {code}
> http://server:8080/api/v1/clusters/cl1/stack_versions
> {code}
> returns:
> {code}
> {
> "href" : "http://server:8080/api/v1/clusters/cl1/stack_versions",
> "items" : [
> {
> "href" : "http://server:8080/api/v1/clusters/cl1/stack_versions/1",
> "ClusterStackVersions" : {
> "cluster_name" : "cl1",
> "id" : 1,
> "repository_version" : 1,
> "stack" : "HDP",
> "version" : "2.3"
> }
> }
> ]
> }
> {code}
> But we can sent request to not available stack_versions:
> {code}
> http://server:8080/api/v1/clusters/cl1/stack_versions/34343rfff4/repository_versions/1/operating_systems/debian7/repositories/HDP-2.3
> {code}
> returns:
> {code}
> {
> "href" : "http://server:8080/api/v1/clusters/cl1/stack_versions/34343rfff4/repository_versions/1/operating_systems/debian7/repositories/HDP-2.3",
> "Repositories" : {
> "base_url" : "http://s3.amazonaws.com/hortonworks.com/HDP/debian7/2.x/BUILDS/2.3.4.0-3335",
> "default_base_url" : "",
> "latest_base_url" : "",
> "mirrors_list" : "",
> "os_type" : "debian7",
> "repo_id" : "HDP-2.3",
> "repo_name" : "HDP",
> "repository_version_id" : 1,
> "stack_name" : "HDP",
> "stack_version" : "2.3"
> }
> }
> {code}
> There should be some type of validation of used stack_versio.



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)

Mime
View raw message