[ 
https://issues.apache.org/jira/browse/STORM-689?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=14359557#comment-14359557
 ] 

ASF GitHub Bot commented on STORM-689:
--------------------------------------

Github user harshach commented on the pull request:

    https://github.com/apache/storm/pull/445#issuecomment-78663596
  
    @Parth-Brahmbhatt @revans2 Thanks for the review. I updated the PR to 
include nimbus.groups as well and added doc under SECURITY.md. Please take a 
look.


> SimpleACLAuthorizer should provide a way to restrict who can submit topologies
> ------------------------------------------------------------------------------
>
>                 Key: STORM-689
>                 URL: https://issues.apache.org/jira/browse/STORM-689
>             Project: Apache Storm
>          Issue Type: Improvement
>            Reporter: Sriharsha Chintalapani
>            Assignee: Sriharsha Chintalapani
>            Priority: Trivial
>
> SimpleACLAuthorizer currently allows anyone with a valid kerberos ticket to 
> submit topologies. There are cases where storm admins want to allow only 
> selected users to submit topologies. I am proposing nimbus.users config 
> option if its added to storm.yaml only the listed users can deploy the storm 
> topologies. 
> cc [~revans2]



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)

Reply via email to