ranger-commits mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From mad...@apache.org
Subject [1/7] incubator-ranger git commit: RANGER-680 : Default policies for KMS repo
Date Sat, 21 Nov 2015 17:54:56 GMT
Repository: incubator-ranger
Updated Branches:
  refs/heads/tag-policy 588881d6c -> 91f19321d


RANGER-680 : Default policies for KMS repo

Signed-off-by: Velmurugan Periasamy <vel@apache.org>
(cherry picked from commit 18e63978666eba70b67519501cc7871b3a8c79d7)


Project: http://git-wip-us.apache.org/repos/asf/incubator-ranger/repo
Commit: http://git-wip-us.apache.org/repos/asf/incubator-ranger/commit/f294d68e
Tree: http://git-wip-us.apache.org/repos/asf/incubator-ranger/tree/f294d68e
Diff: http://git-wip-us.apache.org/repos/asf/incubator-ranger/diff/f294d68e

Branch: refs/heads/tag-policy
Commit: f294d68e3516faae37a6b7fde0bcec1db53d2a95
Parents: 588881d
Author: Gautam Borad <gborad@gmail.com>
Authored: Tue Oct 6 13:06:46 2015 +0530
Committer: Madhan Neethiraj <madhan@apache.org>
Committed: Sat Nov 21 09:40:55 2015 -0800

----------------------------------------------------------------------
 .../src/main/java/org/apache/ranger/biz/ServiceDBStore.java  | 8 --------
 1 file changed, 8 deletions(-)
----------------------------------------------------------------------


http://git-wip-us.apache.org/repos/asf/incubator-ranger/blob/f294d68e/security-admin/src/main/java/org/apache/ranger/biz/ServiceDBStore.java
----------------------------------------------------------------------
diff --git a/security-admin/src/main/java/org/apache/ranger/biz/ServiceDBStore.java b/security-admin/src/main/java/org/apache/ranger/biz/ServiceDBStore.java
index ced2f51..0ee3595 100644
--- a/security-admin/src/main/java/org/apache/ranger/biz/ServiceDBStore.java
+++ b/security-admin/src/main/java/org/apache/ranger/biz/ServiceDBStore.java
@@ -1928,14 +1928,6 @@ public class ServiceDBStore extends AbstractServiceStore {
 			users.add(vXUser.getName());
 			policyItem.setUsers(users);
 
-			// Default policy for KMS should grant all access to 'public'
-			long serviceType = createdService.getType() == null ? -1 : createdService.getType();
-			if(serviceType == EmbeddedServiceDefsUtil.instance().getKmsServiceDefId()) {
-				List<String> groups = new ArrayList<String>();
-				groups.add(RangerConstants.GROUP_PUBLIC);
-				policyItem.setGroups(groups);
-			}
-			
 			List<XXAccessTypeDef> accessTypeDefs = daoMgr.getXXAccessTypeDef().findByServiceDefId(createdService.getType());
 			List<RangerPolicyItemAccess> accesses = new ArrayList<RangerPolicyItemAccess>();
 			for(XXAccessTypeDef accessTypeDef : accessTypeDefs) {


Mime
View raw message