Skip to content

User operator and OPA #6539

Discussion options

You must be logged in to vote

I understand that while using OPA it does not make sense to have kafkausers created but we are in a migration phase and need that this functionality keeps working for our mtls "legacy" users.

That is not possible. Kafka allows you to have only one authorizer. You either use the OPA authorizer and then you should remove the ACLs rules from your users. Or you use Simple authorizer and than you can manage the ACLs from the KafkaUser resources. There is no in-between variant.

Replies: 1 comment 2 replies

Comment options

You must be logged in to vote
2 replies
@jesussancheztellomm
Comment options

@scholzj
Comment options

Answer selected by jesussancheztellomm
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants