2012-08-24 19:20:52 -04:00
|
|
|
/**
|
|
|
|
* Licensed to the Apache Software Foundation (ASF) under one
|
|
|
|
* or more contributor license agreements. See the NOTICE file
|
|
|
|
* distributed with this work for additional information
|
|
|
|
* regarding copyright ownership. The ASF licenses this file
|
|
|
|
* to you under the Apache License, Version 2.0 (the
|
|
|
|
* "License"); you may not use this file except in compliance
|
|
|
|
* with the License. You may obtain a copy of the License at
|
|
|
|
*
|
|
|
|
* http://www.apache.org/licenses/LICENSE-2.0
|
|
|
|
*
|
|
|
|
* Unless required by applicable law or agreed to in writing, software
|
|
|
|
* distributed under the License is distributed on an "AS IS" BASIS,
|
|
|
|
* WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
|
|
* See the License for the specific language governing permissions and
|
|
|
|
* limitations under the License.
|
|
|
|
*/
|
|
|
|
|
|
|
|
option java_package = "org.apache.hadoop.hbase.protobuf.generated";
|
|
|
|
option java_outer_classname = "AccessControlProtos";
|
|
|
|
option java_generic_services = true;
|
|
|
|
option java_generate_equals_and_hash = true;
|
|
|
|
option optimize_for = SPEED;
|
|
|
|
|
2013-08-08 00:19:49 -04:00
|
|
|
import "hbase.proto";
|
|
|
|
|
2012-08-24 19:20:52 -04:00
|
|
|
message Permission {
|
|
|
|
enum Action {
|
|
|
|
READ = 0;
|
|
|
|
WRITE = 1;
|
|
|
|
EXEC = 2;
|
|
|
|
CREATE = 3;
|
|
|
|
ADMIN = 4;
|
|
|
|
}
|
2013-08-13 17:49:56 -04:00
|
|
|
enum Type {
|
|
|
|
Global = 1;
|
|
|
|
Namespace = 2;
|
|
|
|
Table = 3;
|
|
|
|
}
|
|
|
|
required Type type = 1;
|
|
|
|
optional GlobalPermission global_permission = 2;
|
|
|
|
optional NamespacePermission namespace_permission = 3;
|
|
|
|
optional TablePermission table_permission = 4;
|
|
|
|
}
|
|
|
|
|
|
|
|
message TablePermission {
|
|
|
|
optional TableName table_name = 1;
|
|
|
|
optional bytes family = 2;
|
|
|
|
optional bytes qualifier = 3;
|
|
|
|
repeated Permission.Action action = 4;
|
|
|
|
}
|
|
|
|
|
|
|
|
message NamespacePermission {
|
|
|
|
optional bytes namespace_name = 1;
|
|
|
|
repeated Permission.Action action = 2;
|
|
|
|
}
|
|
|
|
|
|
|
|
message GlobalPermission {
|
|
|
|
repeated Permission.Action action = 1;
|
2012-08-24 19:20:52 -04:00
|
|
|
}
|
|
|
|
|
|
|
|
message UserPermission {
|
|
|
|
required bytes user = 1;
|
2013-08-13 17:49:56 -04:00
|
|
|
required Permission permission = 3;
|
2012-08-24 19:20:52 -04:00
|
|
|
}
|
|
|
|
|
|
|
|
/**
|
2013-08-13 17:49:56 -04:00
|
|
|
* Content of the /hbase/acl/<table or namespace> znode.
|
2012-08-24 19:20:52 -04:00
|
|
|
*/
|
2013-08-13 17:49:56 -04:00
|
|
|
message UsersAndPermissions {
|
2012-08-24 19:20:52 -04:00
|
|
|
message UserPermissions {
|
|
|
|
required bytes user = 1;
|
|
|
|
repeated Permission permissions = 2;
|
|
|
|
}
|
|
|
|
|
2013-08-13 17:49:56 -04:00
|
|
|
repeated UserPermissions user_permissions = 1;
|
2012-08-24 19:20:52 -04:00
|
|
|
}
|
2012-09-18 02:32:57 -04:00
|
|
|
|
|
|
|
message GrantRequest {
|
2013-08-13 17:49:56 -04:00
|
|
|
required UserPermission user_permission = 1;
|
2012-09-18 02:32:57 -04:00
|
|
|
}
|
|
|
|
|
|
|
|
message GrantResponse {
|
|
|
|
}
|
|
|
|
|
|
|
|
message RevokeRequest {
|
2013-08-13 17:49:56 -04:00
|
|
|
required UserPermission user_permission = 1;
|
2012-09-18 02:32:57 -04:00
|
|
|
}
|
|
|
|
|
|
|
|
message RevokeResponse {
|
|
|
|
}
|
|
|
|
|
|
|
|
message UserPermissionsRequest {
|
2013-08-13 17:49:56 -04:00
|
|
|
optional Permission.Type type = 1;
|
|
|
|
optional TableName table_name = 2;
|
|
|
|
optional bytes namespace_name = 3;
|
2012-09-18 02:32:57 -04:00
|
|
|
}
|
|
|
|
|
|
|
|
message UserPermissionsResponse {
|
2013-08-13 17:49:56 -04:00
|
|
|
repeated UserPermission user_permission = 1;
|
2012-09-18 02:32:57 -04:00
|
|
|
}
|
|
|
|
|
|
|
|
message CheckPermissionsRequest {
|
2013-08-13 17:49:56 -04:00
|
|
|
repeated Permission permission = 1;
|
2012-09-18 02:32:57 -04:00
|
|
|
}
|
|
|
|
|
|
|
|
message CheckPermissionsResponse {
|
|
|
|
}
|
|
|
|
|
|
|
|
service AccessControlService {
|
2013-07-10 12:30:32 -04:00
|
|
|
rpc Grant(GrantRequest)
|
2012-09-18 02:32:57 -04:00
|
|
|
returns (GrantResponse);
|
|
|
|
|
2013-07-10 12:30:32 -04:00
|
|
|
rpc Revoke(RevokeRequest)
|
2012-09-18 02:32:57 -04:00
|
|
|
returns (RevokeResponse);
|
|
|
|
|
2013-07-10 12:30:32 -04:00
|
|
|
rpc GetUserPermissions(UserPermissionsRequest)
|
2012-09-18 02:32:57 -04:00
|
|
|
returns (UserPermissionsResponse);
|
|
|
|
|
2013-07-10 12:30:32 -04:00
|
|
|
rpc CheckPermissions(CheckPermissionsRequest)
|
2012-09-18 02:32:57 -04:00
|
|
|
returns (CheckPermissionsResponse);
|
|
|
|
}
|