Details
-
Type:
extRequest
-
Status: Closed
-
Priority:
Major
-
Resolution: Done
-
Fix Version/s: 2021
-
Component/s: FIWARE-TECH-HELP
-
Labels:None
-
Sender Email:
-
HD-Chapter:Data
-
HD-Enabler:Cosmos
Description
Hello,
I was working with a coworker on Cosmos (trying to make Hive queries) and
we encounter a security issue.
When we log in to Cosmos, we can only access our own HDFS user space . The
problem come from Hive, any user can list every tables existing in the
cosmos node , and can query them .
We noticed that when my coworker who didn't remember the exact name of his
Hive table launch the command "show table" . He was able to see every
tables from any users that exists in Cosmos . We were a little suspicious ,
so I told him to try to query my own table and it worked. I guess we can
then access any tables on your system.
Have you way to fix that? Is there any configuration to make a tables
private?
Best regards .
–
Guillaume Jourdain.
_______________________________________________
Fiware-lab-help mailing list
Fiware-lab-help@lists.fi-ware.org
https://lists.fi-ware.org/listinfo/fiware-lab-help
[Created via e-mail received from: Guillaume Jourdain <guillaume.jourdain@4planet.eu>]
Activity
Field | Original Value | New Value |
---|---|---|
Component/s | FIWARE-LAB-HELP [ 10279 ] |
Attachment | logo Ambiente_foglia2.jpg [ 15689 ] |
Assignee | Francisco Romero [ frb ] |
Component/s | FIWARE-TECH-HELP [ 10278 ] | |
Component/s | FIWARE-LAB-HELP [ 10279 ] |
Status | Open [ 1 ] | In Progress [ 3 ] |
Status | In Progress [ 3 ] | Answered [ 10104 ] |
Summary | [Fiware-lab-help] Security problem with Hive | FIWARE.Request.Lab.Data.BigData-Analysis.SecurityProblemWithHive |
Summary | FIWARE.Request.Lab.Data.BigData-Analysis.SecurityProblemWithHive | FIWARE.Request.Lab.Data.BigData-Analysis.IssueAccessingHive |
Resolution | Done [ 10000 ] | |
Status | Answered [ 10104 ] | Closed [ 6 ] |
Summary | FIWARE.Request.Lab.Data.BigData-Analysis.IssueAccessingHive | FIWARE.Request.Tech.Data.BigData-Analysis.IssueAccessingHive |
Sender Email | guillaume.jourdain@4planet.eu |
HD-Enabler | Cosmos [ 10872 ] | |
HD-Chapter | Data [ 10838 ] |
Fix Version/s | 2021 [ 12600 ] |