[ 
https://issues.apache.org/jira/browse/SENTRY-286?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=14346802#comment-14346802
 ] 

Jim Halfpenny commented on SENTRY-286:
--------------------------------------

URI objects are a special case since only the ALL privilege is supported. 
Currently a user can GRANT SELECT on a URI and this results in assignment of 
the ALL privilege, which may not be what the user intends. For grants on URI 
objects would it be sensible to disallow INSERT and SELECT or at least display 
a warning message?

> Data object to available privilege actions should be made strict
> ----------------------------------------------------------------
>
>                 Key: SENTRY-286
>                 URL: https://issues.apache.org/jira/browse/SENTRY-286
>             Project: Sentry
>          Issue Type: Bug
>    Affects Versions: 1.3.0
>            Reporter: Sravya Tirukkovalur
>              Labels: grant/revoke
>             Fix For: 1.5.0
>
>
> For example: INSERT/SELECT on uri is not supported, and just traslated to 
> all. May be we should throw a warning/exception if user tries to set these 
> unsupported actions on an object?



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)

Reply via email to