[ 
https://issues.apache.org/jira/browse/HAWQ-256?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=15438530#comment-15438530
 ] 

Lili Ma commented on HAWQ-256:
------------------------------

Agree on the Grant/Revoke should be disabled is ranger is enabled.

In this way, the with grant option will not be considered.

Another thing is the owner management. Besides normal ACL, HAWQ has a 
definition of owner. The owner of the object can do any operation.  And for the 
owner part,  "Grant parent role to member role" and "reassign" are two SQL 
commands for owner control. I think we should move owner control to Ranger, to 
enable a fully Ranger-centralized access control. Your thoughts? 
[~vVineet][~bosco]

> Integrate Security with Apache Ranger
> -------------------------------------
>
>                 Key: HAWQ-256
>                 URL: https://issues.apache.org/jira/browse/HAWQ-256
>             Project: Apache HAWQ
>          Issue Type: New Feature
>          Components: PXF, Security
>            Reporter: Michael Andre Pearce (IG)
>            Assignee: Lili Ma
>             Fix For: backlog
>
>         Attachments: HAWQRangerSupportDesign.pdf
>
>
> Integrate security with Apache Ranger for a unified Hadoop security solution. 



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)

Reply via email to