Re: Proposal: Apply SQL based authorization functions in the metastore.

2018-04-28 Thread Thejas Nair
Hi Elliot, One scenario where Storage based authorization doesn't work is the case of object stores such as S3. In those scenarios, the tool/platform that is accessing the data won't have any restrictions on data access either. I am not sure how the data access would be secured in such cases, even

Proposal: Apply SQL based authorization functions in the metastore.

2018-04-20 Thread Elliot West
Hello, I’d like to propose that SQL based authorization (or something similar) be applied and enforced also in the metastore service as part of the initiative to extract HMS as an independent project. While any such implementation cannot be ’system complete’ like HiveServer2 (HS2) (HMS has no scop