| Summary: | Should View Providers be implicit for Remove Providers Role? | ||
|---|---|---|---|
| Product: | Red Hat Satellite | Reporter: | Corey Welton <cwelton> |
| Component: | Security | Assignee: | Partha Aji <paji> |
| Status: | CLOSED CURRENTRELEASE | QA Contact: | Tazim Kolhar <tkolhar> |
| Severity: | low | Docs Contact: | |
| Priority: | low | ||
| Version: | Nightly | CC: | bkearney, cwelton, ehelms, mmccune, tkolhar |
| Target Milestone: | Unspecified | Keywords: | Triaged |
| Target Release: | Unused | ||
| Hardware: | Unspecified | ||
| OS: | Unspecified | ||
| Whiteboard: | |||
| Fixed In Version: | Doc Type: | Bug Fix | |
| Doc Text: | Story Points: | --- | |
| Clone Of: | Environment: | ||
| Last Closed: | 2014-07-02 14:07:39 UTC | Type: | --- |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
|
Description
Corey Welton
2011-09-24 00:25:57 UTC
FWIW, other CRUD roles - particularly, Create and Manage, both do seem to implicitly allow read access too In Katello Create/Update/Remove automatically implies read. But I am unable to reproduce this issue. Is it possible that you had "Remove" with no specific provider selected? Try selecting a specific provider for this remove provider permission and let me know if you can't read still do the read. You can also say the user can remove all providers in the permission. Either way 'Remove' will only work if you have a provider you can remove. Merely selecting the verb won't do much good. Any I am going to resolve this as ON_QA. Fail back if you are still hitting this issue. I just confirmed this still happens. User was created, and granted a (global) role with only one permission - delete providers. However, upon logging in, user cannot see providers from the Content Management > Providers tab. BTW, version (re)tested in comment #3 above: katello-glue-foreman-0.1.145-1.git.0.57471e6.el6.noarch katello-all-0.1.145-1.git.0.57471e6.el6.noarch katello-httpd-ssl-key-pair-1.0-1.noarch katello-certs-tools-1.0.1-2.el6.noarch katello-repos-0.1.3-1.git.0.db2bd1d.el6.noarch katello-common-0.1.145-1.git.0.57471e6.el6.noarch katello-configure-0.1.37-1.git.11.fac6c90.el6.noarch katello-cli-0.1.28-1.git.0.5dc3631.el6.noarch katello-cli-common-0.1.28-1.git.0.5dc3631.el6.noarch katello-trusted-ssl-cert-1.0-1.noarch katello-glue-pulp-0.1.145-1.git.0.57471e6.el6.noarch katello-glue-candlepin-0.1.145-1.git.0.57471e6.el6.noarch katello-qpid-broker-key-pair-1.0-1.noarch katello-0.1.145-1.git.0.57471e6.el6.noarch Partha, please note: "User cannot see any providers!" As such, re: "Is it possible that you had "Remove"with no specific provider selected?" - this would be impossible. I cannot remove providers if I cannot see them in the first place. This appears to be working upstream as of 909cf6dc7ea400013a06f1e3494d216ee67e5bee Moving to Sat6 to be tracked there. Upstream bugs are moving to redmine. VERIFIED This was delivered with 6.0.3, which is the Satellite 6 Beta. |