WIP
authorKai Moritz <kai@juplo.de>
Fri, 25 Apr 2025 09:00:36 +0000 (11:00 +0200)
committerKai Moritz <kai@juplo.de>
Sat, 26 Apr 2025 08:48:06 +0000 (10:48 +0200)
docker-compose.yml

index db57d56..cd4498b 100644 (file)
@@ -21,8 +21,9 @@ services:
       KAFKA_OFFSETS_TOPIC_REPLICATION_FACTOR: 3
       KAFKA_AUTO_CREATE_TOPICS_ENABLE: "false"
       KAFKA_AUTHORIZER_CLASS_NAME: kafka.security.authorizer.AclAuthorizer
-      KAFKA_ALLOW_EVERYONE_IF_NO_ACL_FOUND: "true"
-      KAFKA_LISTENER_NAME_BROKER_ENABLED_MECHANISMS: PLAIN
+      KAFKA_ALLOW_EVERYONE_IF_NO_ACL_FOUND: "false"
+      KAFKA_SUPER_USERS: User:ANONYMOUS
+      KAFKA_LISTENER_NAME_BROKER_SASL_ENABLED_MECHANISMS: PLAIN
       KAFKA_LISTENER_NAME_BROKER_PLAIN_SASL_JAAS_CONFIG: |
         org.apache.kafka.common.security.plain.PlainLoginModule required \
         user_broker="geheim" \
@@ -31,7 +32,7 @@ services:
       KAFKA_SASL_MECHANISM_INTER_BROKER_PROTOCOL: PLAIN
       KAFKA_SASL_ENABLED_MECHANISMS: PLAIN, SCRAM-SHA-256, SCRAM-SHA-512
       KAFKA_LOG_RETENTION_CHECK_INTERVAL_MS: 1000
-      KAFKA_LOG4J_LOGGERS: "org.apache.kafka.metadata.migration=TRACE"
+      KAFKA_LOG4J_LOGGERS: org.apache.kafka.metadata.migration=TRACE, kafka.authorizer.logger=INFO
     volumes:
       - kafka-1-data:/var/lib/kafka/data
     ports: