Bug 1549137

Summary: Restricted user can see all group and users
Product: Red Hat CloudForms Management Engine Reporter: Anurag <ansinha>
Component: UI - OPSAssignee: Libor Pichler <lpichler>
Status: CLOSED CURRENTRELEASE QA Contact: Landon LaSmith <llasmith>
Severity: high Docs Contact:
Priority: high    
Version: 5.8.0CC: akarol, ansinha, cpelland, greartes, hkataria, lavenel, lpichler, mpovolny, obarenbo, simaishi
Target Milestone: GAKeywords: TestOnly, ZStream
Target Release: 5.10.0Flags: ansinha: automate_bug+
Hardware: Unspecified   
OS: Unspecified   
Whiteboard: rbac
Fixed In Version: 5.10.0.0 Doc Type: If docs needed, set a value
Doc Text:
Story Points: ---
Clone Of:
: 1553779 (view as bug list) Environment:
Last Closed: 2019-02-11 14:08:52 UTC Type: Bug
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: Bug
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: CFME Core Target Upstream Version:
Embargoed:
Bug Depends On:    
Bug Blocks: 1553779    

Comment 10 Landon LaSmith 2018-06-29 17:41:34 UTC
VERIFIED in 5.10.0.2 I was able to create a user assigned to super admin and other groups that had restricted access to the access control accordion.  Logging on as that user as super admin allowed full control of RBAC objects. When I changed to the restricted group the user could only see group that matched the restricted access (Tagged w/ Department->Engieering)