conduktor.io ↗

KIP-753 — ACL authentication, Host field support IP network segment

Discussion Security

Extends the Kafka ACL `host` field syntax to support CIDR IP network ranges (e.g., `192.168.1.0/24`) in addition to individual IPs and the wildcard `*`. Currently, granting access to a block of IP addresses requires creating one ACL entry per IP, which is operationally burdensome for large subnets.

Details

Authorloboxu
StatusDiscussion
JIRAKAFKA-12715
WikiView on Apache Wiki
Created2021-06-07
Last Modified2021-06-07
Explore how this KIP affects the Kafka protocol in the Protocol Explorer, or see the full KIP database.