Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Bug] When disable authorization in broker.conf, normal user can not see and access topic created by super user in 5.3.0 #9139

Open
3 tasks done
caton-wang opened this issue Jan 16, 2025 · 0 comments

Comments

@caton-wang
Copy link

Before Creating the Bug Report

  • I found a bug, not just asking a question, which should be created in GitHub Discussions.

  • I have searched the GitHub Issues and GitHub Discussions of this repository and believe that this is not a duplicate.

  • I have confirmed that this bug belongs to the current repository, not other repositories of RocketMQ.

Runtime platform environment

OS: Any linux

RocketMQ version

Release 5.3.0

JDK Version

Oracle JDK 1.8

Describe the Bug

When disable ACL 2.0 authorization in broker.conf config file, normal user can not see and access topic created by super user in 5.3.0. although authorization has been disabled, you have to run following ACL rule, to grant the normal user access the topic create by super user:

Image

Steps to Reproduce

  1. Disable authorizaiton parameters in broker.conf.
  2. Create a normal user.
  3. Create a topic use super user.
  4. Produce and consume by using this normal user.

What Did You Expect to See?

Normal user can produce and consume rightly when authorization disabled.

What Did You See Instead?

Normal user can not see and access topic created by super user when authorization disabled.

Additional Context

No response

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant