[ 
https://issues.apache.org/jira/browse/HBASE-12641?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=14263399#comment-14263399
 ] 

Hudson commented on HBASE-12641:
--------------------------------

SUCCESS: Integrated in HBase-1.0 #627 (See 
[https://builds.apache.org/job/HBase-1.0/627/])
HBASE-12641 Grant all permissions of hbase zookeeper node to hbase superuser in 
a secure cluster (Liu Shaohui) (enis: rev 
efc3a85473fdd21eadc3e7916907bcff6196f225)
* 
hbase-client/src/main/java/org/apache/hadoop/hbase/zookeeper/ZooKeeperWatcher.java
* hbase-client/src/main/java/org/apache/hadoop/hbase/zookeeper/ZKUtil.java


> Grant all permissions of hbase zookeeper node to hbase superuser in a secure 
> cluster
> ------------------------------------------------------------------------------------
>
>                 Key: HBASE-12641
>                 URL: https://issues.apache.org/jira/browse/HBASE-12641
>             Project: HBase
>          Issue Type: Improvement
>          Components: Zookeeper
>            Reporter: Liu Shaohui
>            Assignee: Liu Shaohui
>            Priority: Minor
>             Fix For: 1.0.0, 2.0.0, 0.98.10, 1.1.0
>
>         Attachments: HBASE-12641-v1.diff
>
>
> Currently in a secure cluster, only the master/regionserver kerberos user can 
> manage the znode of hbase. But he master/regionserver kerberos user is for 
> rpc connection and we usually use another super user to manage the cluster.
> In some special scenarios, we need to manage the data of znode with the 
> supper user.
> eg: 
> a, To get the data of the znode for debugging.
> b, HBASE-8253: We need to delete the znode for the corrupted hlog to avoid it 
> block the replication.
> So we grant all permissions of hbase zookeeper node to hbase superuser during 
> creating these znodes.
> Suggestions are welcomed.
> [~apurtell]



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)

Reply via email to