[
https://issues.apache.org/jira/browse/AMBARI-13977?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Robert Levas updated AMBARI-13977:
----------------------------------
Description:
Enforce granular role-based access control for user functions:
|| || Cluster\\User || Service\\Operator || Service\\Administrator ||
Cluster\\Operator || Cluster\\Administrator || Administrator ||
|Create new clusters | | | | | |(+)|
|Manage users | | | | | |(+)|
|Assign permissions/roles | | | | | |(+)|
Entry points affected:
* GET /api/v1/users/:username
* GET /api/v1/users/:username/widget_layouts
* GET /api/v1/users/:username/privileges
* POST /api/v1/users/:username
* DELETE /api/v1/users/:username
* PUT /api/v1/users/:username
* GET /api/v1/priviliges
* POST /api/v1/priviliges
* GET /api/v1/priviliges/:privilege_id
* DELETE /api/v1/priviliges/:privilege_id
* PUT /api/v1/priviliges/:privilege_id
* GET /api/v1/clusters/:cluster_name/priviliges
* GET /api/v1/clusters/:cluster_name/priviliges/:privilege_id
* POST /api/v1/clusters/:cluster_name/priviliges
* DELETE /api/v1/clusters/:cluster_name/priviliges/:privilege_id
* PUT /api/v1/clusters/:cluster_name/priviliges/:privilege_id
was:
Enforce granular role-based access control for user functions:
|| || Cluster\\User || Service\\Operator || Service\\Administrator ||
Cluster\\Operator || Cluster\\Administrator || Administrator ||
|Create new clusters | | | | | |(+)|
|Manage users | | | | | |(+)|
|Assign permissions/roles | | | | | |(+)|
> Enforce granular role-based access control for user functions
> -------------------------------------------------------------
>
> Key: AMBARI-13977
> URL: https://issues.apache.org/jira/browse/AMBARI-13977
> Project: Ambari
> Issue Type: Task
> Components: ambari-server
> Affects Versions: 2.2.0
> Reporter: Robert Levas
> Assignee: Robert Levas
> Labels: rbac, security
> Fix For: 2.2.0
>
> Attachments: AMBARI-13977_trunk_01.patch
>
>
> Enforce granular role-based access control for user functions:
> || || Cluster\\User || Service\\Operator || Service\\Administrator ||
> Cluster\\Operator || Cluster\\Administrator || Administrator ||
> |Create new clusters | | | | | |(+)|
> |Manage users | | | | | |(+)|
> |Assign permissions/roles | | | | | |(+)|
> Entry points affected:
> * GET /api/v1/users/:username
> * GET /api/v1/users/:username/widget_layouts
> * GET /api/v1/users/:username/privileges
> * POST /api/v1/users/:username
> * DELETE /api/v1/users/:username
> * PUT /api/v1/users/:username
> * GET /api/v1/priviliges
> * POST /api/v1/priviliges
> * GET /api/v1/priviliges/:privilege_id
> * DELETE /api/v1/priviliges/:privilege_id
> * PUT /api/v1/priviliges/:privilege_id
> * GET /api/v1/clusters/:cluster_name/priviliges
> * GET /api/v1/clusters/:cluster_name/priviliges/:privilege_id
> * POST /api/v1/clusters/:cluster_name/priviliges
> * DELETE /api/v1/clusters/:cluster_name/priviliges/:privilege_id
> * PUT /api/v1/clusters/:cluster_name/priviliges/:privilege_id
--
This message was sent by Atlassian JIRA
(v6.3.4#6332)