Bug 772742

Summary: DB upgrade gives "All Resources Role" an unintended permission
Product: [Other] RHQ Project Reporter: Jay Shaughnessy <jshaughn>
Component: DatabaseAssignee: Jay Shaughnessy <jshaughn>
Status: CLOSED CURRENTRELEASE QA Contact: Mike Foley <mfoley>
Severity: medium Docs Contact:
Priority: high    
Version: 4.2CC: hrupp
Target Milestone: ---   
Target Release: RHQ 4.3.0   
Hardware: All   
OS: All   
Whiteboard:
Fixed In Version: 4.3 Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of:
: 785987 (view as bug list) Environment:
Last Closed: 2013-08-31 10:09:19 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On:    
Bug Blocks: 760116, 785987    
Attachments:
Description Flags
All Resources JON 2.4.2
none
All Resources JON 3.01 none

Description Jay Shaughnessy 2012-01-09 20:36:57 UTC
Upgrades to RHQ 4.3 mistakenly granted manage_repository perm to
'All Resources Role'.

Comment 2 Jay Shaughnessy 2012-01-09 20:48:18 UTC
master commit c6706aed03df889e23102ea254b2d342141d8b9b

Fix the upgrade step that grants the bad permission. And add a new
step to revoke it if it exists.

Comment 3 Charles Crouch 2012-01-31 23:47:07 UTC
Commits for this BZ went into master so setting target release to RHQ4.3

Comment 4 Mike Foley 2012-02-09 16:54:52 UTC
documenting the verification with screenshots of role permissions in JON 2.4.2 upgraded to JON 3.01

Comment 5 Mike Foley 2012-02-09 16:56:53 UTC
Created attachment 560662 [details]
All Resources JON 2.4.2

Comment 6 Mike Foley 2012-02-09 16:57:30 UTC
Created attachment 560663 [details]
All Resources JON 3.01

Comment 7 Mike Foley 2012-02-09 17:15:54 UTC
i logged this new BZ as part of the verification process

https://bugzilla.redhat.com/show_bug.cgi?id=789069

Comment 8 Heiko W. Rupp 2013-08-31 10:09:19 UTC
Bulk close of old bugs in VERIFIED state.