Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

update security sidebar #1859

Closed
wants to merge 13 commits into from
10 changes: 7 additions & 3 deletions i18n/zh-CN/docusaurus-plugin-content-docs/current.json
Original file line number Diff line number Diff line change
Expand Up @@ -219,9 +219,9 @@
"message": "安全概述",
"description": "The label for category Security Overview in sidebar docs"
},
"sidebar.docs.category.Data Transmission Encryption": {
"sidebar.docs.category.Encryption in Transit": {
"message": "传输加密",
"description": "The label for category Data Transmission Encryption in sidebar docs"
"description": "The label for category Encryption in Transit in sidebar docs"
},
"sidebar.docs.category.Authentication and Authorization": {
"message": "认证与鉴权",
Expand Down Expand Up @@ -287,6 +287,10 @@
"message": "安全管理",
"description": "The label for category Managing User Privilege in sidebar docs"
},
"sidebar.docs.category.Data Encryption": {
"message": "数据加密",
"description": "The label for category Data Encryption in sidebar docs"
},
"sidebar.docs.category.Trouble Shooting": {
"message": "故障诊断处理",
"description": "The label for category Trouble Shooting in sidebar docs"
Expand Down Expand Up @@ -603,4 +607,4 @@
"message": "备份与恢复",
"description": "The label for category Backup & Restore in sidebar docs"
}
}
}
6 changes: 5 additions & 1 deletion i18n/zh-CN/docusaurus-plugin-content-docs/version-2.1.json
Original file line number Diff line number Diff line change
Expand Up @@ -695,8 +695,12 @@
"message": "业务连续性和数据恢复",
"description": "The label for category Business Continuity & Data Recovery in sidebar docs"
},
"sidebar.docs.category.Data Encryption": {
"message": "数据加密",
"description": "The label for category Data Encryption in sidebar docs"
},
"sidebar.docs.category.Backup & Restore": {
"message": "备份与恢复",
"description": "The label for category Backup & Restore in sidebar docs"
}
}
}
Original file line number Diff line number Diff line change
Expand Up @@ -24,22 +24,20 @@ specific language governing permissions and limitations
under the License.
-->



Doris 提供以下机制管理数据安全:

身份认证:Doris 支持用户名/密码与 LDAP 认证方式。

内置认证:Doris 内置了用户名/密码的认证方式,可以自定义密码策略;

LDAP 认证:Doris 可以通过 LDAP 服务集中管理用户凭证,简化访问控制并增强系统的安全性。
- 内置认证:Doris 内置了用户名/密码的认证方式,可以自定义密码策略;
- LDAP 认证:Doris 可以通过 LDAP 服务集中管理用户凭证,简化访问控制并增强系统的安全性。

权限管控:Doris 支持基于角色的访问控制或继承 Ranger 实现集中化的权限管理。

基于角色的访问控制(RBAC),Doirs 可以根据用户角色与权限,限制其对数据库资源的访问与操作;

Ranger 权限管理:Doris 可以通过集成 Ranger 实现集中化的权限管理,允许管理员为不同的用户和组设置细粒度的访问控制策略。

- 基于角色的访问控制(RBAC),Doirs 可以根据用户角色与权限,限制其对数据库资源的访问与操作;
- Ranger 权限管理:Doris 可以通过集成 Ranger 实现集中化的权限管理,允许管理员为不同的用户和组设置细粒度的访问控制策略。
审计与日志记录:Doris 可以开启审计日志,记录用户的所有操作行为,包括登陆,查询,数据修改等行为,便于事后审计与问题追踪;

数据加密与脱敏:Doris 支持对表中的数据进行加密与脱敏,防止未授权的访问当值数据泄漏;
Expand Down
6 changes: 5 additions & 1 deletion i18n/zh-CN/docusaurus-plugin-content-docs/version-3.0.json
Original file line number Diff line number Diff line change
Expand Up @@ -719,8 +719,12 @@
"message": "业务连续性和数据恢复",
"description": "The label for category Business Continuity & Data Recovery in sidebar docs"
},
"sidebar.docs.category.Data Encryption": {
"message": "数据加密",
"description": "The label for category Data Encryption in sidebar docs"
},
"sidebar.docs.category.Backup & Restore": {
"message": "备份与恢复",
"description": "The label for category Backup & Restore in sidebar docs"
}
}
}
Original file line number Diff line number Diff line change
Expand Up @@ -24,22 +24,20 @@ specific language governing permissions and limitations
under the License.
-->



Doris 提供以下机制管理数据安全:

身份认证:Doris 支持用户名/密码与 LDAP 认证方式。

内置认证:Doris 内置了用户名/密码的认证方式,可以自定义密码策略;

LDAP 认证:Doris 可以通过 LDAP 服务集中管理用户凭证,简化访问控制并增强系统的安全性。
- 内置认证:Doris 内置了用户名/密码的认证方式,可以自定义密码策略;
- LDAP 认证:Doris 可以通过 LDAP 服务集中管理用户凭证,简化访问控制并增强系统的安全性。

权限管控:Doris 支持基于角色的访问控制或继承 Ranger 实现集中化的权限管理。

基于角色的访问控制(RBAC),Doirs 可以根据用户角色与权限,限制其对数据库资源的访问与操作;

Ranger 权限管理:Doris 可以通过集成 Ranger 实现集中化的权限管理,允许管理员为不同的用户和组设置细粒度的访问控制策略。

- 基于角色的访问控制(RBAC),Doirs 可以根据用户角色与权限,限制其对数据库资源的访问与操作;
- Ranger 权限管理:Doris 可以通过集成 Ranger 实现集中化的权限管理,允许管理员为不同的用户和组设置细粒度的访问控制策略。
审计与日志记录:Doris 可以开启审计日志,记录用户的所有操作行为,包括登陆,查询,数据修改等行为,便于事后审计与问题追踪;

数据加密与脱敏:Doris 支持对表中的数据进行加密与脱敏,防止未授权的访问当值数据泄漏;
Expand Down
37 changes: 18 additions & 19 deletions sidebars.json
Original file line number Diff line number Diff line change
Expand Up @@ -478,32 +478,31 @@
"admin-manual/auth/security-overview",
{
"type": "category",
"label": "Authentication",
"label": "Authentication and Authorization",
"items": [
"admin-manual/auth/authentication/internal",
"admin-manual/auth/authentication/federation"
]
},
{
"type": "category",
"label": "Authorization",
"items": [
"admin-manual/auth/authorization/internal",
"admin-manual/auth/authorization/ranger",
"admin-manual/auth/authorization/data"
"admin-manual/auth/authentication-and-authorization",
"admin-manual/auth/ldap",
"admin-manual/auth/ranger"
]
},
"admin-manual/audit-plugin",
{
"type": "category",
"label": "Data Transmission Encryption",
"label": "Data Encryption",
"items": [
"admin-manual/auth/certificate",
"admin-manual/auth/fe-certificate"
{
"type": "category",
"label": "Encryption in Transit",
"items": [
"admin-manual/auth/certificate",
"admin-manual/auth/fe-certificate"
]
},
"admin-manual/auth/encryption-function"
]
},
"admin-manual/audit-plugin",
"admin-manual/auth/encryption-function"
}
]

}
]
},
Expand Down Expand Up @@ -1972,4 +1971,4 @@
]
}
]
}
}
20 changes: 13 additions & 7 deletions versioned_sidebars/version-2.1-sidebars.json
Original file line number Diff line number Diff line change
Expand Up @@ -414,16 +414,22 @@
"admin-manual/auth/ranger"
]
},
"admin-manual/audit-plugin",
{
"type": "category",
"label": "Data Transmission Encryption",
"label": "Data Encryption",
"items": [
"admin-manual/auth/certificate",
"admin-manual/auth/fe-certificate"
{
"type": "category",
"label": "Encryption in Transit",
"items": [
"admin-manual/auth/certificate",
"admin-manual/auth/fe-certificate"
]
},
"admin-manual/auth/encryption-function"
]
},
"admin-manual/audit-plugin",
"admin-manual/auth/encryption-function"
}
]
}
]
Expand Down Expand Up @@ -2083,4 +2089,4 @@
]
}
]
}
}
20 changes: 13 additions & 7 deletions versioned_sidebars/version-3.0-sidebars.json
Original file line number Diff line number Diff line change
Expand Up @@ -458,16 +458,22 @@
"admin-manual/auth/ranger"
]
},
"admin-manual/audit-plugin",
{
"type": "category",
"label": "Data Transmission Encryption",
"label": "Data Encryption",
"items": [
"admin-manual/auth/certificate",
"admin-manual/auth/fe-certificate"
{
"type": "category",
"label": "Encryption in Transit",
"items": [
"admin-manual/auth/certificate",
"admin-manual/auth/fe-certificate"
]
},
"admin-manual/auth/encryption-function"
]
},
"admin-manual/audit-plugin",
"admin-manual/auth/encryption-function"
}
]
}
]
Expand Down Expand Up @@ -2158,4 +2164,4 @@
]
}
]
}
}
Loading