[ https://issues.apache.org/jira/browse/CASSANDRA-7216?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]
Sam Tunnicliffe reopened CASSANDRA-7216: ---------------------------------------- Assignee: Sam Tunnicliffe (was: Dave Brosius) Re-opening - see [CASSANDRA-8650|https://issues.apache.org/jira/browse/CASSANDRA-8650?focusedCommentId=14303224&page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel#comment-14303224] for details > Restricted superuser account request > ------------------------------------ > > Key: CASSANDRA-7216 > URL: https://issues.apache.org/jira/browse/CASSANDRA-7216 > Project: Cassandra > Issue Type: Improvement > Reporter: Oded Peer > Assignee: Sam Tunnicliffe > Priority: Minor > Fix For: 3.0 > > Attachments: 7216-POC.txt, 7216.txt > > > I am developing a multi-tenant service. > Every tenant has its own user, keyspace and can access only his keyspace. > As new tenants are provisioned there is a need to create new users and > keyspaces. > Only a superuser can issue CREATE USER requests, so we must have a super user > account in the system. On the other hand super users have access to all the > keyspaces, which poses a security risk. > For tenant provisioning I would like to have a restricted account which can > only create new users, without read access to keyspaces. -- This message was sent by Atlassian JIRA (v6.3.4#6332)