[
https://issues.apache.org/jira/browse/SENTRY-2103?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Hrishikesh Gadre updated SENTRY-2103:
-------------------------------------
Attachment: SENTRY-2103.1.patch
> Authorization check for CREATEALIAS command doesn't check permissions for the
> alias name
> ----------------------------------------------------------------------------------------
>
> Key: SENTRY-2103
> URL: https://issues.apache.org/jira/browse/SENTRY-2103
> Project: Sentry
> Issue Type: Bug
> Components: Solr Plugin
> Affects Versions: 2.0.0
> Reporter: Hrishikesh Gadre
> Assignee: Hrishikesh Gadre
> Attachments: SENTRY-2103.1.patch
>
>
> As part of SENTRY-1475, we reimplemented Sentry/Solr integration to base on
> Solr authorization framework. The original implementation of Sentry/Solr
> integration used to validate the collection level permissions for the alias
> name during CREATEALIAS admin operation. During the refactoring done in
> SENTRY-1475, we missed that check. This jira is to rectify this mistake.
--
This message was sent by Atlassian JIRA
(v6.4.14#64029)