[ 
https://issues.apache.org/jira/browse/DISPATCH-1556?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17022042#comment-17022042
 ] 

ASF GitHub Bot commented on DISPATCH-1556:
------------------------------------------

jbyrne-redhat commented on pull request #673: DISPATCH-1556: Doc - add step to 
set sasldb permissions
URL: https://github.com/apache/qpid-dispatch/pull/673#discussion_r370091939
 
 

 ##########
 File path: 
docs/books/modules/user-guide/enabling-username-password-authentication.adoc
 ##########
 @@ -55,6 +55,19 @@ The full user name is the user name you entered plus the 
domain name (`__<user-n
 ====
 --
 
+. Ensure that the `qdrouterd` process can read the SASL database.
++
+--
+The `qdrouterd` process may run as an unprivileged user. Therefore, you may 
need to adjust the permissions or ownership of the SASL database so that the 
router can read it.
 
 Review comment:
   It might be worth rethinking the two uses of 'may' in this paragraph. 
   
   Specifically, I wasn't sure if the first sentence is intended to imply 
permission (that is, the `qdrouterd` process is _allowed to_ run as an 
unprivileged user), or whether it implies ambiguity (the `qdrouterd` process 
_might_ run as an unprivileged user).
   
   The second sentence is more clear-cut. I would consider rewording to 
"Therefore, you might need to adjust..."
 
----------------------------------------------------------------
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.
 
For queries about this service, please contact Infrastructure at:
us...@infra.apache.org


> Doc should specify correct ownership/permission on sasldb file
> --------------------------------------------------------------
>
>                 Key: DISPATCH-1556
>                 URL: https://issues.apache.org/jira/browse/DISPATCH-1556
>             Project: Qpid Dispatch
>          Issue Type: Improvement
>          Components: Documentation
>    Affects Versions: 1.10.0
>            Reporter: Ben Hardesty
>            Assignee: Ben Hardesty
>            Priority: Major
>             Fix For: 1.11.0
>
>
> When using SASL PLAIN for username/password authentication, the 
> ownership/permissions of the SASLDB should be set such that the qdrouterd 
> process can read it.



--
This message was sent by Atlassian Jira
(v8.3.4#803005)

---------------------------------------------------------------------
To unsubscribe, e-mail: dev-unsubscr...@qpid.apache.org
For additional commands, e-mail: dev-h...@qpid.apache.org

Reply via email to