Read Restrictions and Catalog Labels: Unifying governance across engines and catalogs
Apache Iceberg has introduced read restrictions and catalog labels, two new specifications designed to standardize policy enforcement across different engines and catalogs. These additions eliminate fragmented enforcement by delegating access decisions to trusted engines and making governance metadata portable across federated catalogs.
- Read restrictions and catalog labels are two new specs from Apache Iceberg™ that help standardize how policies are enforced across engines and catalogs. - Both additions remove fragmented enforcement. Read restrictions delegate decisions to trusted engines; catalog labels make governance metadata portable across federated catalogs. - There's now a clear model for every access pattern: centralized enforcement for untrusted engines, read restrictions for trusted ones, catalog labels for catalog-to-catalog federation.
