OpenSearch - "Index permissions" for the role do not restrict access to the index

0

I have created the domain in VPC form with enabled Fine-Grained with internal database configuration (non-Cognito).
Now, I was tried to make an additional user with limited permissions to a single index by following this tutorial: https://docs.aws.amazon.com/opensearch-service/latest/developerguide/fgac-walkthrough-basic.html but in result:

  • I can see only documents matched by "FlightDelay": true rule
  • I can see anonymized Dest field
  • I still can use the _search/ query, though I have limited it by the pattern opensearch_dashboards_sample_data_fl* for search only on the opensearch_dashboards_sample_data_flights index

Additionally, I have checked the same rules and settings on my local OpenSearch (also as 1.2) and there everything works as I expected. Did I forget about something or is there anything else that I must do?

Pawel
已提问 2 年前198 查看次数
没有答案

您未登录。 登录 发布回答。

一个好的回答可以清楚地解答问题和提供建设性反馈,并能促进提问者的职业发展。

回答问题的准则