Return-Path: Delivered-To: apmail-couchdb-dev-archive@www.apache.org Received: (qmail 40713 invoked from network); 19 Feb 2010 18:40:54 -0000 Received: from hermes.apache.org (HELO mail.apache.org) (140.211.11.3) by minotaur.apache.org with SMTP; 19 Feb 2010 18:40:54 -0000 Received: (qmail 73235 invoked by uid 500); 19 Feb 2010 18:40:53 -0000 Delivered-To: apmail-couchdb-dev-archive@couchdb.apache.org Received: (qmail 73160 invoked by uid 500); 19 Feb 2010 18:40:53 -0000 Mailing-List: contact dev-help@couchdb.apache.org; run by ezmlm Precedence: bulk List-Help: List-Unsubscribe: List-Post: List-Id: Reply-To: dev@couchdb.apache.org Delivered-To: mailing list dev@couchdb.apache.org Received: (qmail 73150 invoked by uid 99); 19 Feb 2010 18:40:53 -0000 Received: from nike.apache.org (HELO nike.apache.org) (192.87.106.230) by apache.org (qpsmtpd/0.29) with ESMTP; Fri, 19 Feb 2010 18:40:53 +0000 X-ASF-Spam-Status: No, hits=-2000.0 required=10.0 tests=ALL_TRUSTED X-Spam-Check-By: apache.org Received: from [140.211.11.140] (HELO brutus.apache.org) (140.211.11.140) by apache.org (qpsmtpd/0.29) with ESMTP; Fri, 19 Feb 2010 18:40:51 +0000 Received: from brutus.apache.org (localhost [127.0.0.1]) by brutus.apache.org (Postfix) with ESMTP id 6D57929A0032 for ; Fri, 19 Feb 2010 10:40:30 -0800 (PST) Message-ID: <1905941555.394971266604830446.JavaMail.jira@brutus.apache.org> Date: Fri, 19 Feb 2010 18:40:30 +0000 (UTC) From: "Filipe Manana (JIRA)" To: dev@couchdb.apache.org Subject: [jira] Created: (COUCHDB-661) _all_dbs should list only the DBs accessible to the user MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 7bit X-JIRA-FingerPrint: 30527f35849b9dde25b450d4833f0394 X-Virus-Checked: Checked by ClamAV on apache.org _all_dbs should list only the DBs accessible to the user -------------------------------------------------------- Key: COUCHDB-661 URL: https://issues.apache.org/jira/browse/COUCHDB-661 Project: CouchDB Issue Type: Bug Components: HTTP Interface Affects Versions: 0.11 Environment: trunk / 0.11 Reporter: Filipe Manana Fix For: 0.11 Attachments: couchdb-_all_dbs-auth.patch As discussed in the auth roadmap mail, sent by Chris to @dev, the _all_dbs URI should only list the DBs that are accessible to the user. The following patch is a naive solution. It doesn't scale for CouchDB servers with millions of DBs. Regarding this scaling detail, I'll discuss soon in the @dev mailing list some ideas. -- This message is automatically generated by JIRA. - You can reply to this email to add a comment to the issue online.