[ 
https://issues.apache.org/jira/browse/HIVE-3009?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=13457941#comment-13457941
 ] 

Sushanth Sowmyan commented on HIVE-3009:
----------------------------------------

I'm +1 on intent/code attached on the review.

I've still not got all the tests to pass on the current branch, but that might 
be due to issues on my end. If we get all tests succeeding, this can be patched 
in.
                
> do authorization for all metadata operations
> --------------------------------------------
>
>                 Key: HIVE-3009
>                 URL: https://issues.apache.org/jira/browse/HIVE-3009
>             Project: Hive
>          Issue Type: Bug
>          Components: Authorization, Metastore
>            Reporter: Thejas M Nair
>            Assignee: Vandana Ayyalasomayajula
>
> Most of the metadata read operations and some write operations are not 
> checking for authorization. 
> See org.apache.hadoop.hive.ql.plan.HiveOperation . Operations such as 
> DESCTABLE and DROPDATABASE have null for required privileges. 

--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators
For more information on JIRA, see: http://www.atlassian.com/software/jira

Reply via email to