[ https://issues.apache.org/jira/browse/STORM-689?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=14359557#comment-14359557 ]
ASF GitHub Bot commented on STORM-689: -------------------------------------- Github user harshach commented on the pull request: https://github.com/apache/storm/pull/445#issuecomment-78663596 @Parth-Brahmbhatt @revans2 Thanks for the review. I updated the PR to include nimbus.groups as well and added doc under SECURITY.md. Please take a look. > SimpleACLAuthorizer should provide a way to restrict who can submit topologies > ------------------------------------------------------------------------------ > > Key: STORM-689 > URL: https://issues.apache.org/jira/browse/STORM-689 > Project: Apache Storm > Issue Type: Improvement > Reporter: Sriharsha Chintalapani > Assignee: Sriharsha Chintalapani > Priority: Trivial > > SimpleACLAuthorizer currently allows anyone with a valid kerberos ticket to > submit topologies. There are cases where storm admins want to allow only > selected users to submit topologies. I am proposing nimbus.users config > option if its added to storm.yaml only the listed users can deploy the storm > topologies. > cc [~revans2] -- This message was sent by Atlassian JIRA (v6.3.4#6332)