hadoop-yarn-issues mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Sumana Sathish (JIRA)" <j...@apache.org>
Subject [jira] [Created] (YARN-6891) Can kill other user's applications via RM UI
Date Thu, 27 Jul 2017 18:22:00 GMT
Sumana Sathish created YARN-6891:
------------------------------------

             Summary: Can kill other user's applications via RM UI
                 Key: YARN-6891
                 URL: https://issues.apache.org/jira/browse/YARN-6891
             Project: Hadoop YARN
          Issue Type: Bug
            Reporter: Sumana Sathish
            Assignee: Junping Du
            Priority: Critical


In a  secured cluster with UI unsecured which has following config
{code}
"hadoop.http.authentication.simple.anonymous.allowed" => "true"
"hadoop.http.authentication.type" => kerberos
{code}

UI can be accessed without any security setting.

Also any user can kill other user's applications via UI



--
This message was sent by Atlassian JIRA
(v6.4.14#64029)

---------------------------------------------------------------------
To unsubscribe, e-mail: yarn-issues-unsubscribe@hadoop.apache.org
For additional commands, e-mail: yarn-issues-help@hadoop.apache.org


Mime
View raw message