sentry-commits mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Arun Suresh (JIRA)" <j...@apache.org>
Subject [jira] [Updated] (SENTRY-560) Sentry HDFS Syncup applies duplicate ACLs for the same scope, group and type
Date Tue, 02 Dec 2014 22:46:12 GMT

     [ https://issues.apache.org/jira/browse/SENTRY-560?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]

Arun Suresh updated SENTRY-560:
-------------------------------
    Attachment: SENTRY-560.2.patch

Rebasing patch after SENTRY-559 commit

> Sentry HDFS Syncup applies duplicate ACLs for the same scope, group and type
> ----------------------------------------------------------------------------
>
>                 Key: SENTRY-560
>                 URL: https://issues.apache.org/jira/browse/SENTRY-560
>             Project: Sentry
>          Issue Type: Bug
>    Affects Versions: 1.5.0
>            Reporter: Arun Suresh
>            Assignee: Arun Suresh
>         Attachments: SENTRY-560.1.patch, SENTRY-560.2.patch
>
>
> If Sentry HDFS is turned on, check sample_table. The permission looks like this,
> {noformat}
> [root@x-sentry-1 ~]# hdfs dfs -getfacl /user/hive/warehouse/sample_table
> file: /user/hive/warehouse/sample_table
> owner: hive
> group: hive
> user::rwx
> user:hive:rwx
> group:hive:rwx
> other::---
> group:systest:rwx
> group:sentryDefaultAdmin:rwx
> mask::rwx
> other::--x
> {noformat}
> Notice, there are two "other::-" and "other::-x". If turn off this feature, using setfacl,
it will return errors,
> setfacl: Invalid ACL: multiple entries with same scope, type and name.



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)

Mime
View raw message