You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
[Docs] For CCS and CCR local cluster determines priviliges of API key (#98205) (#98262)
This PR adds a short call out to our CCS & CCR docs for the existing,
certificate-based security model: when API keys are used for
authentication, the privileges of the API key are determined by the
local cluster, instead of the remote. This is a recurring source of
confusion for customers, and generally un-intuitive behavior.
I'm opting for a brief call out, instead of diving into too much detail.
To fully explain (or justify) this behavior, we would likely need a lot
of text and more context around how API keys work. Keeping it short
gives users a pointer in the right direction, without distracting from
the main documentation of CCS and CCR. LMWYT!
0 commit comments