hawq-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Lili Ma (JIRA)" <j...@apache.org>
Subject [jira] [Created] (HAWQ-1207) Gpadmin super user processing on ACL
Date Thu, 08 Dec 2016 06:23:58 GMT
Lili Ma created HAWQ-1207:

             Summary: Gpadmin super user processing on ACL
                 Key: HAWQ-1207
                 URL: https://issues.apache.org/jira/browse/HAWQ-1207
             Project: Apache HAWQ
          Issue Type: Sub-task
          Components: Security
            Reporter: Lili Ma
            Assignee: Lei Chang

Once we specify enable_ranger, we need process gpadmin user privileges. 

Ideally, we should also restrict gpadmin behavior since we won't allow gpadmin to have all
control on all user data. 

During the init system period, we can let gpadmin has all the privileges on all the objects.
May implement this as seed policy in Ranger plugin side.

This message was sent by Atlassian JIRA

View raw message