Vamsi-klu commented on PR #18975:
URL: https://github.com/apache/pinot/pull/18975#issuecomment-5349174298

   Thanks for running the suites and for the revert checks. I agree the UI 
story should be in the release note in plain words: a table-scoped BasicAuth 
user can sign in and then hit 403 on /tables, /schemas, /instances, and 
/tenants. Denying those listings is safer than shipping an unfiltered cluster 
dump. Scope-filtered listings stay follow-up. The back-compat list and helm 
comment now also cover segment completion and v1 /auth/verify.
   
   I could not push the description edit to apache/pinot from this environment. 
When you post the replies, please also add those Backward-incompatible bullets 
and the RoleType / task-debug notes to the PR body.


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]


---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to