hadoop-hdfs-issues mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Charles Lamb (JIRA)" <j...@apache.org>
Subject [jira] [Updated] (HDFS-6393) User settable xAttr to stop HDFS admins from reading/chowning a file
Date Fri, 20 Jun 2014 21:54:25 GMT

     [ https://issues.apache.org/jira/browse/HDFS-6393?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]

Charles Lamb updated HDFS-6393:
-------------------------------

    Issue Type: Bug  (was: Sub-task)
        Parent:     (was: HDFS-6134)

> User settable xAttr to stop HDFS admins from reading/chowning a file
> --------------------------------------------------------------------
>
>                 Key: HDFS-6393
>                 URL: https://issues.apache.org/jira/browse/HDFS-6393
>             Project: Hadoop HDFS
>          Issue Type: Bug
>          Components: namenode, security
>            Reporter: Alejandro Abdelnur
>            Assignee: Charles Lamb
>
> A user should be able to set an xAttr on any file in HDFS to stop an HDFS admin user
from reading the file. The blacklist for chown/chgrp would also enforced.
> This will stop an HDFS admin from gaining access to job token files and getting HDFS
DelegationTokens that would allow him/her to read an encrypted file.



--
This message was sent by Atlassian JIRA
(v6.2#6252)

Mime
View raw message