-
Notifications
You must be signed in to change notification settings - Fork 4.1k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
[STORM-2626] Provided a template for drpc-auth-acl.yaml #2207
Conversation
@HeartSaVioR |
Can one of the admins verify this patch? |
@vesense |
@harshach |
@HeartSaVioR |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
I would prefer using "functionName1", "functionName2" instead of "jump" or "partial".
The comment seems mismatch with the configurations: "bob" is a not invocation user
conf/drpc-auth-acl.yaml.example
Outdated
|
||
|
||
# For the function "jump", alice can perform client operations, and bob can | ||
# perform invocation operations.User should replace "jump","alice","bob","charlie" with their own value |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Sorry I should have stated it here. "bob" is not a invocation user in your example.
@Ethanlm |
2dde576
to
1deab8d
Compare
@Ethanlm |
Thanks. @liu-zhaokun . I was just thinking that adding some instructions on SECURITY.md about DRPC is better than adding one more file in the conf directory. It would make me nervous to see some many configuration files if I'm just a user. People don't even need to care about DRPC configuration if they are not using it. I would like to hear other people's opinions about this. |
@Ethanlm |
@revans2 |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
+1 the change looks fine to me.
I do agree with @Ethanlm that updating SECURITY.md would probably be more helpful, but if you want this to be a first step then I am happy to merge it in. |
@revans2 |
https://issues.apache.org/jira/browse/STORM-2626
The default value of drpc.authorizer.acl.filename in defaults.yaml is "drpc-auth-acl.yaml",so I think we should provided a template for drpc-auth-acl.yaml.