Uploaded image for project: 'CDAP'
  1. CDAP
  2. CDAP-9046

Revoking privileges from a role revoked the privilege from all roles

    Details

    • Type: Bug
    • Status: Resolved
    • Priority: Major
    • Resolution: Fixed
    • Affects Version/s: 4.1.0, 4.0.0, 3.6.0, 3.5.0
    • Fix Version/s: 4.1.1
    • Component/s: Security
    • Labels:
    • Release Notes:
      Fixed an issue where revoking privileges from a role caused the privilege to be revoked from all roles.
    • Rank:
      1|hzzy4n:

      Description

      Revoking privilege from a role revokes the privilege from the all the roles when sentry is backend for authorization.

      This is happening because we are calling Sentry's dropPrivilege command by passing the role as component name rather than calling sentry's revokePrivilege command. Although, its very weird that sentry drops all privilege when the component name is invalid

        Attachments

          Issue Links

            Activity

              People

              • Assignee:
                rsinha Rohit Sinha
                Reporter:
                rsinha Rohit Sinha
              • Votes:
                0 Vote for this issue
                Watchers:
                1 Start watching this issue

                Dates

                • Created:
                  Updated:
                  Resolved: