[
https://issues.apache.org/jira/browse/SENTRY-560?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Arun Suresh updated SENTRY-560:
-------------------------------
Attachment: SENTRY-560.1.patch
Uploading patch
> Sentry HDFS Syncup applies duplicate ACLs for the same scope, group and type
> ----------------------------------------------------------------------------
>
> Key: SENTRY-560
> URL: https://issues.apache.org/jira/browse/SENTRY-560
> Project: Sentry
> Issue Type: Bug
> Affects Versions: 1.5.0
> Reporter: Arun Suresh
> Assignee: Arun Suresh
> Attachments: SENTRY-560.1.patch
>
>
> If Sentry HDFS is turned on, check sample_table. The permission looks like
> this,
> {noformat}
> [root@x-sentry-1 ~]# hdfs dfs -getfacl /user/hive/warehouse/sample_table
> file: /user/hive/warehouse/sample_table
> owner: hive
> group: hive
> user::rwx
> user:hive:rwx
> group:hive:rwx
> other::---
> group:systest:rwx
> group:sentryDefaultAdmin:rwx
> mask::rwx
> other::--x
> {noformat}
> Notice, there are two "other::-" and "other::-x". If turn off this feature,
> using setfacl, it will return errors,
> setfacl: Invalid ACL: multiple entries with same scope, type and name.
--
This message was sent by Atlassian JIRA
(v6.3.4#6332)