# Kafka 3 SASL\_SSL ACL

**URL:** <https://forum.confluent.io/t/kafka-3-sasl-ssl-acl/3684>\
**Category:** Ops\
**Created:** [16 December 2021 09:10 UTC](https://forum.confluent.io/t/kafka-3-sasl-ssl-acl/3684 "2021-12-16T09:10:34Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![spham](https://sea1.discourse-cdn.com/flex019/user_avatar/forum.confluent.io/spham/32/1413_2.png) [@spham](https://forum.confluent.io/u/spham)\
**Post date:** [16 December 2021 09:10 UTC](https://forum.confluent.io/t/kafka-3-sasl-ssl-acl/3684/1 "2021-12-16T09:10:34Z")

</div>

Hi  
I dont find any tuto for Kafka Kraft mode without Zookeeper but with ACL.

I think below documentation it’s not implemented .

have an idea when is done ?

regards

---

<div class="post-metadata">

**Author:** ![mmuehlbeyer](https://sea1.discourse-cdn.com/flex019/user_avatar/forum.confluent.io/mmuehlbeyer/32/1088_2.png) [@mmuehlbeyer](https://forum.confluent.io/u/mmuehlbeyer)\
**Post date:** [16 December 2021 15:30 UTC](https://forum.confluent.io/t/kafka-3-sasl-ssl-acl/3684/2 "2021-12-16T15:30:48Z")

</div>

Hi

according to

> <https://github.com/apache/kafka/blob/f653cb7b5889fd619ab0e6a25216bd981a9d82bf/config/kraft/README.md#missing-features>

you could try with

> although note that you can use authorizers such as `kafka.security.authorizer.AclAuthorizer` with KRaft clusters, even if they are ZooKeeper-based: simply define `authorizer.class.name` and configure the authorizer as you normally would)

though never tried it by myself

---

<div class="post-metadata">

**Author:** ![gklijs](https://sea1.discourse-cdn.com/flex019/user_avatar/forum.confluent.io/gklijs/32/223_2.png) [@gklijs](https://forum.confluent.io/u/gklijs)\
**Post date:** [17 December 2021 03:20 UTC](https://forum.confluent.io/t/kafka-3-sasl-ssl-acl/3684/3 "2021-12-17T03:20:04Z")

</div>

I also have seen acl’s with Zookeeper also. But I think how it’s implemented is pretty open. Not sure how easy it is to implement the Authorizer and use either Kafka itself, or something like s3 for storing them.
