Important
You are viewing documentation for an older version of Confluent Platform. For the latest, click here.
confluent iam acl create¶
Flags¶
--kafka-cluster-id string Kafka cluster ID for scope of ACL commands.
--allow ACL permission to allow access.
--deny ACL permission to restrict access to resource.
--principal string Principal for this operation with User: or Group: prefix.
--host string Set host for access. (default "*")
--operation string Set ACL Operation to: (all, alter, alter-configs, cluster-action, create, delete, describe, describe-configs, idempotent-write, read, write).
--cluster-scope Set the cluster resource. With this option the ACL grants
access to the provided operations on the Kafka cluster itself.
--consumer-group string Set the Consumer Group resource.
--transactional-id string Set the TransactionalID resource.
--topic string Set the topic resource. With this option the ACL grants the provided
operations on the topics that start with that prefix, depending on whether
the --prefix option was also passed.
--prefix Set to match all resource names prefixed with this value.
-h, --help Help for iam acl create.
Global Flags¶
-v, --verbose count Increase verbosity (-v for warn, -vv for info, -vvv for debug, -vvvv for trace).
Examples¶
Create an ACL that grants the specified user READ permission to the specified consumer group in the specified Kafka cluster:
confluent iam acl create --allow --principal User:User1 --operation READ --consumer-group java_example_group_1 --kafka-cluster-id <kafka-cluster-id>
Create an ACL that grants the specified user WRITE permission on all topics in the specified Kafka cluster.
confluent iam acl create --allow --principal User:User1 --operation WRITE --topic '*' --kafka-cluster-id <kafka-cluster-id>
Create an ACL that assigns a group READ access to all topics that use the specified prefix in the specified Kafka cluster.
confluent iam acl create --allow --principal Group:Finance --operation READ --topic financial --prefix --kafka-cluster-id <kafka-cluster-id>