pig-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Prashant Kommireddi (JIRA)" <j...@apache.org>
Subject [jira] [Commented] (PIG-4080) Add Preprocessor commands and more to the black/whitelisting feature
Date Tue, 29 Jul 2014 21:47:40 GMT

    [ https://issues.apache.org/jira/browse/PIG-4080?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=14078437#comment-14078437
] 

Prashant Kommireddi commented on PIG-4080:
------------------------------------------

RB https://reviews.apache.org/r/24071/

Sorry about the whitespace issues, I will fix them.

> Add Preprocessor commands and more to the black/whitelisting feature
> --------------------------------------------------------------------
>
>                 Key: PIG-4080
>                 URL: https://issues.apache.org/jira/browse/PIG-4080
>             Project: Pig
>          Issue Type: Improvement
>    Affects Versions: 0.14.0, 0.13.1
>            Reporter: Prashant Kommireddi
>            Assignee: Prashant Kommireddi
>         Attachments: PIG-4080.patch
>
>
> Executing Pig scripts in a multi-tenant environment within the context of the app server
requires disabling certain other commands that could be dangerous. For eg, the shell commands
contained within the pig script will be executed as the user (possibly superuser) on the app
server. The following is an example
> %declare X `id`;
> An admin might want to disable certain features, such as either disabling "shell" entirely
or even being extra cautious by disabling "declare". Some more commands that could be disabled
are - default, define (dynamic invokers), run and exec.



--
This message was sent by Atlassian JIRA
(v6.2#6252)

Mime
View raw message