Data access control

Content Platform for Cloud Scale Administration Guide

Version
2.6.x
File Size
1945 KB
Audience
anonymous
Part Number
MK-HCPCS008-10

HCP for cloud scale uses ownership and access control lists (ACLs) as data access control mechanisms for the S3 API.

Ownership is implemented as follows:

  • An HCP for cloud scale bucket is owned by the user who creates the bucket and the owner cannot be changed.
  • A user has full control of the buckets that user owns.
  • A user has full control of the objects that user creates.
  • A user can list only the buckets that user owns.

ACLs allow the assignment of privileges (read, write, or full control) for access to buckets and objects to other user accounts besides the owner's.