Bug 1569079

Summary: Getting Forbidden exception after ordering the service by non-admin user.
Product: Red Hat CloudForms Management Engine Reporter: Satoe Imaishi <simaishi>
Component: UI - ServiceAssignee: Ohad Levy <ohadlevy>
Status: CLOSED ERRATA QA Contact: Landon LaSmith <llasmith>
Severity: high Docs Contact:
Priority: high    
Version: 5.8.0CC: aperotti, bascar, cpelland, dclarizi, gekis, james.beal, lavenel, obarenbo, ohadlevy, simaishi, smallamp
Target Milestone: GAKeywords: ZStream
Target Release: 5.8.4   
Hardware: All   
OS: All   
Whiteboard:
Fixed In Version: 5.8.4.2 Doc Type: If docs needed, set a value
Doc Text:
Story Points: ---
Clone Of: 1546944 Environment:
Last Closed: 2018-06-25 14:20:12 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On: 1546944    
Bug Blocks:    

Comment 2 CFME Bot 2018-04-18 15:11:24 UTC
New commit detected on ManageIQ/manageiq/fine:

https://github.com/ManageIQ/manageiq/commit/e04653d6af148fac6371407b00b801abfe51c0f7
commit e04653d6af148fac6371407b00b801abfe51c0f7
Author:     Gregg Tanzillo <gtanzill>
AuthorDate: Thu Mar  8 12:33:17 2018 -0500
Commit:     Gregg Tanzillo <gtanzill>
CommitDate: Thu Mar  8 12:33:17 2018 -0500

    Merge pull request #343 from jntullo/bz_1546944

    Add svc_catalog_provision product feature to service dialog queries
    (cherry picked from commit 31b312c741321ca71e98bac76abf8224ffac53e2)

    Fixes https://bugzilla.redhat.com/show_bug.cgi?id=1569079

 config/api.yml | 12 +-
 spec/requests/api/service_dialogs_spec.rb | 16 +
 2 files changed, 25 insertions(+), 3 deletions(-)

Comment 4 Landon LaSmith 2018-05-18 13:36:00 UTC
VERIFIED in 5.8.4.3. I was able to create a user assigned to a role with Compute and Services product features enabled.  That user was able to view the service catalogs and order the catalog

Comment 6 errata-xmlrpc 2018-06-25 14:20:12 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory, and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHSA-2018:1972