Skip to content

HBASE-29244 Support admin users acl setting with LDAP (Web UI only) - #6923

Merged
NihalJain merged 4 commits into
apache:masterfrom
NihalJain:HBASE-29244
May 31, 2025
Merged

HBASE-29244 Support admin users acl setting with LDAP (Web UI only)#6923
NihalJain merged 4 commits into
apache:masterfrom
NihalJain:HBASE-29244

Conversation

@NihalJain

Copy link
Copy Markdown
Contributor

No description provided.

@Apache-HBase

This comment has been minimized.

@Apache-HBase

This comment has been minimized.

@Apache-HBase

This comment has been minimized.

@Apache-HBase

This comment has been minimized.

@Apache-HBase

This comment has been minimized.

@Apache-HBase

This comment has been minimized.

@Apache-HBase

This comment has been minimized.

@Apache-HBase

This comment has been minimized.

@NihalJain

Copy link
Copy Markdown
ContributorAuthor

Failure is unrelated!

@Apache-HBase

This comment has been minimized.

@Apache-HBase

This comment has been minimized.

@NihalJain

Copy link
Copy Markdown
ContributorAuthor

I have verified this change in a distributed setup with ldap, works as expected, only admin user can access privileged pages in web ui!

Screenshot 2025-04-16 at 2 22 40 PM

Please review @Apache9@ndimiduk@stoty@PDavid

@PDavidPDavid left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Many thanks Nihal, looks very clean and nice to me. 👍

Comment threadhbase-http/src/main/java/org/apache/hadoop/hbase/http/InfoServer.java Outdated
Comment threadhbase-http/src/test/java/org/apache/hadoop/hbase/http/TestLdapAdminACL.java Outdated
Comment threadsrc/main/asciidoc/_chapters/security.adoc
@NihalJain

Copy link
Copy Markdown
ContributorAuthor

Hey @PDavid thanks for your reviews. Will look at the review comments and come back with a PR update soon!

@NihalJain

Copy link
Copy Markdown
ContributorAuthor

Hey @PDavid thanks for your reviews. Will look at the review comments and come back with a PR update soon!

Address review comments by @PDavid with 3e2891b

Please review!

@PDavidPDavid left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Many thanks Nihal Jain for the additional improvements. 👍

@Apache-HBase

Copy link
Copy Markdown

🎊 +1 overall

VoteSubsystemRuntimeLogfileComment
+0 🆗reexec0m 30sDocker mode activated.
_ Prechecks _
+1 💚dupname0m 0sNo case conflicting files found.
+0 🆗codespell0m 0scodespell was not available.
+0 🆗detsecrets0m 0sdetect-secrets was not available.
+1 💚@author0m 0sThe patch does not contain any @author tags.
+1 💚hbaseanti0m 0sPatch does not have any anti-patterns.
_ master Compile Tests _
+0 🆗mvndep1m 42sMaven dependency ordering for branch
+1 💚mvninstall3m 32smaster passed
+1 💚compile7m 58smaster passed
+1 💚checkstyle1m 10smaster passed
+1 💚spotbugs7m 51smaster passed
+0 🆗refguide2m 31sbranch has no errors when building the reference guide. See footer for rendered docs, which you should manually inspect.
+1 💚spotless0m 45sbranch has no errors when running spotless:check.
_ Patch Compile Tests _
+0 🆗mvndep0m 11sMaven dependency ordering for patch
+1 💚mvninstall2m 58sthe patch passed
+1 💚compile8m 4sthe patch passed
-0 ⚠️javac8m 4s/results-compile-javac-root.txtroot generated 4 new + 1270 unchanged - 2 fixed = 1274 total (was 1272)
+1 💚blanks0m 0sThe patch has no blanks issues.
+1 💚checkstyle1m 12sthe patch passed
+1 💚spotbugs8m 0sthe patch passed
+0 🆗refguide2m 3spatch has no errors when building the reference guide. See footer for rendered docs, which you should manually inspect.
+1 💚hadoopcheck11m 55sPatch does not cause any errors with Hadoop 3.3.6 3.4.0.
+1 💚spotless0m 44spatch has no errors when running spotless:check.
_ Other Tests _
+1 💚asflicense0m 20sThe patch does not generate ASF License warnings.
69m 9s
SubsystemReport/Notes
DockerClientAPI=1.43 ServerAPI=1.43 base: https://ci-hbase.apache.org/job/HBase-PreCommit-GitHub-PR/job/PR-6923/6/artifact/yetus-general-check/output/Dockerfile
GITHUB PR#6923
Optional Testsdupname asflicense javac spotbugs checkstyle codespell detsecrets compile hadoopcheck hbaseanti spotless refguide
unameLinux 91848e0865ba 5.4.0-1103-aws #111~18.04.1-Ubuntu SMP Tue May 23 20:04:10 UTC 2023 x86_64 x86_64 x86_64 GNU/Linux
Build toolmaven
Personalitydev-support/hbase-personality.sh
git revisionmaster / 3e2891b
Default JavaEclipse Adoptium-17.0.11+9
refguidehttps://nightlies.apache.org/hbase/HBase-PreCommit-GitHub-PR/PR-6923/6/yetus-general-check/output/branch-site/book.html
refguidehttps://nightlies.apache.org/hbase/HBase-PreCommit-GitHub-PR/PR-6923/6/yetus-general-check/output/patch-site/book.html
Max. process+thread count189 (vs. ulimit of 30000)
modulesC: hbase-http . U: .
Console outputhttps://ci-hbase.apache.org/job/HBase-PreCommit-GitHub-PR/job/PR-6923/6/console
versionsgit=2.34.1 maven=3.9.8 spotbugs=4.7.3
Powered byApache Yetus 0.15.0 https://yetus.apache.org

This message was automatically generated.

@Apache-HBase

Copy link
Copy Markdown

💔 -1 overall

VoteSubsystemRuntimeLogfileComment
+0 🆗reexec0m 27sDocker mode activated.
-0 ⚠️yetus0m 3sUnprocessed flag(s): --brief-report-file --spotbugs-strict-precheck --author-ignore-list --blanks-eol-ignore-file --blanks-tabs-ignore-file --quick-hadoopcheck
_ Prechecks _
_ master Compile Tests _
+0 🆗mvndep0m 11sMaven dependency ordering for branch
+1 💚mvninstall3m 12smaster passed
+1 💚compile2m 15smaster passed
+1 💚javadoc2m 7smaster passed
+1 💚shadedjars5m 58sbranch has no errors when building our shaded downstream artifacts.
_ Patch Compile Tests _
+0 🆗mvndep0m 11sMaven dependency ordering for patch
+1 💚mvninstall3m 2sthe patch passed
+1 💚compile2m 11sthe patch passed
+1 💚javac2m 11sthe patch passed
+1 💚javadoc2m 8sthe patch passed
+1 💚shadedjars5m 53spatch has no errors when building our shaded downstream artifacts.
_ Other Tests _
-1 ❌unit234m 24s/patch-unit-root.txtroot in the patch failed.
267m 29s
SubsystemReport/Notes
DockerClientAPI=1.43 ServerAPI=1.43 base: https://ci-hbase.apache.org/job/HBase-PreCommit-GitHub-PR/job/PR-6923/6/artifact/yetus-jdk17-hadoop3-check/output/Dockerfile
GITHUB PR#6923
Optional Testsjavac javadoc unit compile shadedjars
unameLinux 037075685beb 5.4.0-1103-aws #111~18.04.1-Ubuntu SMP Tue May 23 20:04:10 UTC 2023 x86_64 x86_64 x86_64 GNU/Linux
Build toolmaven
Personalitydev-support/hbase-personality.sh
git revisionmaster / 3e2891b
Default JavaEclipse Adoptium-17.0.11+9
Test Resultshttps://ci-hbase.apache.org/job/HBase-PreCommit-GitHub-PR/job/PR-6923/6/testReport/
Max. process+thread count5944 (vs. ulimit of 30000)
modulesC: hbase-http . U: .
Console outputhttps://ci-hbase.apache.org/job/HBase-PreCommit-GitHub-PR/job/PR-6923/6/console
versionsgit=2.34.1 maven=3.9.8
Powered byApache Yetus 0.15.0 https://yetus.apache.org

This message was automatically generated.

@ndimidukndimiduk left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Nice one @NihalJain !

@NihalJain

Copy link
Copy Markdown
ContributorAuthor

Failures are not related.

@NihalJain

Copy link
Copy Markdown
ContributorAuthor

Will merge this soon, but let me get other related LDAP change to branch-2 first, #5680

@Apache-HBase

This comment has been minimized.

@Apache-HBase

This comment has been minimized.

@Apache-HBase

Copy link
Copy Markdown

💔 -1 overall

VoteSubsystemRuntimeLogfileComment
+0 🆗reexec0m 30sDocker mode activated.
-0 ⚠️yetus0m 3sUnprocessed flag(s): --brief-report-file --spotbugs-strict-precheck --author-ignore-list --blanks-eol-ignore-file --blanks-tabs-ignore-file --quick-hadoopcheck
_ Prechecks _
_ master Compile Tests _
+0 🆗mvndep0m 10sMaven dependency ordering for branch
+1 💚mvninstall3m 14smaster passed
+1 💚compile2m 17smaster passed
+1 💚javadoc3m 20smaster passed
+1 💚shadedjars6m 49sbranch has no errors when building our shaded downstream artifacts.
_ Patch Compile Tests _
+0 🆗mvndep0m 11sMaven dependency ordering for patch
+1 💚mvninstall3m 31sthe patch passed
+1 💚compile2m 54sthe patch passed
+1 💚javac2m 54sthe patch passed
+1 💚javadoc2m 59sthe patch passed
+1 💚shadedjars6m 37spatch has no errors when building our shaded downstream artifacts.
_ Other Tests _
-1 ❌unit329m 58s/patch-unit-root.txtroot in the patch failed.
368m 23s
SubsystemReport/Notes
DockerClientAPI=1.43 ServerAPI=1.43 base: https://ci-hbase.apache.org/job/HBase-PreCommit-GitHub-PR/job/PR-6923/2/artifact/yetus-jdk17-hadoop3-check/output/Dockerfile
GITHUB PR#6923
Optional Testsjavac javadoc unit compile shadedjars
unameLinux e41a3184c564 5.4.0-1103-aws #111~18.04.1-Ubuntu SMP Tue May 23 20:04:10 UTC 2023 x86_64 x86_64 x86_64 GNU/Linux
Build toolmaven
Personalitydev-support/hbase-personality.sh
git revisionmaster / 3e2891b
Default JavaEclipse Adoptium-17.0.11+9
Test Resultshttps://ci-hbase.apache.org/job/HBase-PreCommit-GitHub-PR/job/PR-6923/2/testReport/
Max. process+thread count5066 (vs. ulimit of 30000)
modulesC: hbase-http . U: .
Console outputhttps://ci-hbase.apache.org/job/HBase-PreCommit-GitHub-PR/job/PR-6923/2/console
versionsgit=2.34.1 maven=3.9.8
Powered byApache Yetus 0.15.0 https://yetus.apache.org

This message was automatically generated.

@NihalJain
NihalJain merged commit 06a74f1 into apache:masterMay 31, 2025
NihalJain added a commit that referenced this pull request May 31, 2025
…6923)
Signed-off-by: Nick Dimiduk <ndimiduk@apache.org>
Reviewed-by: Dávid Paksy <paksydavid@gmail.com>
(cherry picked from commit 06a74f1)
NihalJain added a commit to NihalJain/hbase that referenced this pull request May 31, 2025
…pache#6923)
Signed-off-by: Nick Dimiduk <ndimiduk@apache.org>
Reviewed-by: Dávid Paksy <paksydavid@gmail.com>
(cherry picked from commit 06a74f1)
NihalJain added a commit to NihalJain/hbase that referenced this pull request May 31, 2025
…pache#6923)
- Exclude test files which do not work with hadoop-2
Signed-off-by: Nick Dimiduk <ndimiduk@apache.org>
Reviewed-by: Dávid Paksy <paksydavid@gmail.com>
(cherry picked from commit 06a74f1)
NihalJain added a commit to NihalJain/hbase that referenced this pull request May 31, 2025
…pache#6923)
- Exclude test files which do not work with hadoop-2
Signed-off-by: Nick Dimiduk <ndimiduk@apache.org>
Reviewed-by: Dávid Paksy <paksydavid@gmail.com>
(cherry picked from commit 06a74f1)
NihalJain added a commit to NihalJain/hbase that referenced this pull request May 31, 2025
…pache#6923)
- Exclude test files which do not work with hadoop-2
Signed-off-by: Nick Dimiduk <ndimiduk@apache.org>
Reviewed-by: Dávid Paksy <paksydavid@gmail.com>
(cherry picked from commit 06a74f1)
NihalJain added a commit that referenced this pull request May 31, 2025
…6923) (#7053)
* Exclude test files which do not work with hadoop-2
Signed-off-by: Nick Dimiduk <ndimiduk@apache.org>
Reviewed-by: Dávid Paksy <paksydavid@gmail.com>
(cherry picked from commit 06a74f1)
NihalJain added a commit that referenced this pull request May 31, 2025
…6923) (#7054)
* Exclude test files which do not work with hadoop-2
Signed-off-by: Nick Dimiduk <ndimiduk@apache.org>
Reviewed-by: Dávid Paksy <paksydavid@gmail.com>
(cherry picked from commit 06a74f1)
NihalJain added a commit that referenced this pull request May 31, 2025
…6923) (#7055)
* Exclude test files which do not work with hadoop-2
Signed-off-by: Nick Dimiduk <ndimiduk@apache.org>
Reviewed-by: Dávid Paksy <paksydavid@gmail.com>
(cherry picked from commit 06a74f1)
mokai87 pushed a commit to mokai87/hbase that referenced this pull request Aug 7, 2025
…pache#6923) (apache#7053)
* Exclude test files which do not work with hadoop-2
Signed-off-by: Nick Dimiduk <ndimiduk@apache.org>
Reviewed-by: Dávid Paksy <paksydavid@gmail.com>
(cherry picked from commit 06a74f1)
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants

@NihalJain@Apache-HBase@ndimiduk@PDavid