Bug 1264967
Summary: | [RFE] Allow for deletion of group when users belong to another group | |||
---|---|---|---|---|
Product: | Red Hat CloudForms Management Engine | Reporter: | Josh Carter <jocarter> | |
Component: | UI - OPS | Assignee: | lgalis | |
Status: | CLOSED CURRENTRELEASE | QA Contact: | Matt Pusateri <mpusater> | |
Severity: | high | Docs Contact: | ||
Priority: | high | |||
Version: | 5.4.0 | CC: | cpelland, dclarizi, hkataria, jhardy, jprause, lgalis, mpovolny, mpusater, obarenbo, simaishi, syangsao | |
Target Milestone: | GA | Keywords: | FutureFeature, Regression, RFE, TestOnly | |
Target Release: | 5.10.0 | |||
Hardware: | All | |||
OS: | All | |||
Whiteboard: | auth:miqldap:externalauth:ad:freeipa:openldap | |||
Fixed In Version: | 5.10.0.0 | Doc Type: | Enhancement | |
Doc Text: | Story Points: | --- | ||
Clone Of: | ||||
: | 1322396 1460307 1536035 (view as bug list) | Environment: | ||
Last Closed: | 2018-06-21 21:01:26 UTC | Type: | Bug | |
Regression: | --- | Mount Type: | --- | |
Documentation: | --- | CRM: | ||
Verified Versions: | Category: | --- | ||
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | ||
Cloudforms Team: | CFME Core | Target Upstream Version: | ||
Embargoed: | ||||
Bug Depends On: | ||||
Bug Blocks: | 1322396, 1460307, 1536035, 1555371 |
Comment 6
Harpreet Kataria
2016-10-03 17:31:06 UTC
Right now we really only have the concept of "current group" while we store multiple groups in the database, they are not visible in the UI. Another problem in how we support multiple groups, is that it's possible for a user to have a group relationsip that is not shown in the UI b/c it's not their current group. So you try to delete a group, but you can't because of the group relationship. But you also can't see what users are in what groups, so you can't delete the user to delete the group. Related Bug: https://bugzilla.redhat.com/show_bug.cgi?id=1437682 - 5.8.0.12-rc1 This is probably really a new RFE, but it's related. Verified on 5.9.0.2 with external auth - FreeIPA. With and without external groups. Assigning this back to Development. So if a user has 2 groups and the group that you are deleting is the user's current group. Logins for that user are broken till an administrator manually fixes that user's groups. The user is still a member of at least 1 group, but can't log in b/c they have no current group. This obviously doesn't scale for administrators if the group contains multiple users. Also the administrator will expect that they shouldn't have to do this if they are using external ldap groups. |