Skip to content

Expand manage_slm privilege #67539

@albertzaharovits

Description

@albertzaharovits

The description from SLM with Security is a bit unclear to me.
The list mentions privileges to create and delete snapshots (cluster:admin/snapshot/*) when working with SLM, but from my reading of the SLM code that is not necessary. The internal client used by the SLM tasks runs under sufficient privileges to create and remove snapshots, irrespective of the users privileges.

I think we should proceed to remove the cluster:admin/snapshot/* mention in the docs.
Maybe someone from @elastic/es-core-features can verify my theory.

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions