Project

General

Profile

Bug #22007

auth: mds cap parsing should not depend on order

Added by Greg Farnum over 6 years ago. Updated about 5 years ago.

Status:
New
Priority:
Normal
Assignee:
-
Category:
Administration/Usability
Target version:
-
% Done:

0%

Source:
Community (user)
Tags:
Backport:
luminous
Regression:
No
Severity:
3 - minor
Reviewed:
Affected Versions:
ceph-qa-suite:
Component(FS):
MDS
Labels (FS):
Pull request ID:
Crash signature (v1):
Crash signature (v2):

Description

https://www.mail-archive.com/ceph-users@lists.ceph.com/msg41552.html

path= has to come before uid=

mds “allow r, allow rw path=/user uid=100026, allow rw path=/project"

This will confuse people and cause security issues until the end of time.

History

#1 Updated by Patrick Donnelly over 6 years ago

  • Subject changed from mds cap parsing should not depend on order to auth: mds cap parsing should not depend on order
  • Assignee set to Douglas Fuller
  • Source set to Community (user)
  • Backport set to luminous

#2 Updated by Douglas Fuller over 6 years ago

For the record, we do this everywhere. We should probably refactor all of our auth caps grammar to make this work better.

#3 Updated by Patrick Donnelly about 5 years ago

  • Assignee deleted (Douglas Fuller)

Also available in: Atom PDF