Bug 1083154 - Non-admin user should be able to modify self
Summary: Non-admin user should be able to modify self
Keywords:
Status: CLOSED ERRATA
Alias: None
Product: Red Hat Satellite
Classification: Red Hat
Component: API
Version: Nightly
Hardware: Unspecified
OS: Unspecified
unspecified
medium
Target Milestone: Unspecified
Assignee: Marek Hulan
QA Contact: jcallaha
URL: http://projects.theforeman.org/issues...
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2014-04-01 14:53 UTC by Adam Saleh
Modified: 2019-09-25 21:14 UTC (History)
4 users (show)

Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Clone Of:
Environment:
Last Closed: 2016-07-27 11:22:04 UTC
Target Upstream Version:
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Foreman Issue Tracker 5816 0 None None None 2016-04-22 14:54:20 UTC

Description Adam Saleh 2014-04-01 14:53:17 UTC
Description of problem:


Version-Release number of selected component (if applicable):
1.5.0-14.201403312022git846ebfb.el6

How reproducible:
In hammer cli, and foreman setup with katello plugin.

Steps to Reproduce:

$ hammer -v -u admin -p changeme  --output csv user create --firstname='s066f8' --lastname='4i61' --mail='gm8nzs' --login='gm8nzs'
--password='4wqw2' --auth-source-id='1'

'User created,197'

$ hammer -v -u gm8nzs -p 4wqw2  --output csv user info --id='197'

Forbidden - server refused to process the request

Actual results:
User is not able to read himself

Expected results:
User should at least be able to read himself

Comment 1 RHEL Program Management 2014-04-01 14:56:58 UTC
Since this issue was entered in Red Hat Bugzilla, the release flag has been
set to ? to ensure that it is properly evaluated for this release.

Comment 3 Dominic Cleal 2014-05-20 12:53:08 UTC
Created redmine issue http://projects.theforeman.org/issues/5816 from this bug

Comment 5 Bryan Kearney 2015-08-25 17:56:28 UTC
Upstream bug component is Provisioning

Comment 6 Bryan Kearney 2015-08-25 17:58:07 UTC
Upstream bug component is API

Comment 7 Bryan Kearney 2016-04-04 08:02:05 UTC
Moving to POST since upstream bug http://projects.theforeman.org/issues/5816 has been closed
-------------
Marek Hulán
Applied in changeset commit:7ffb50b911e86b9df3415592d896640b87720989.

Comment 8 jcallaha 2016-05-20 19:48:47 UTC
Verified in Satellite 6.2 Beta Snap 12.

hammer -u notadmin -p changeme user info --id 4

Id:                   4
Login:                notadmin
Name:                 not admin
Email:                notadmin
Admin:                no
Authorized by:        Internal
Locale:               default
Timezone:             
Last login:           2016/05/20 19:48:08
Default organization: 
Default location:     
Roles:                
    Anonymous
    Viewer
    View hosts
User groups:          

Locations:            
    Default Location
Organizations:        
    Default Organization
Created at:           2016/05/20 19:46:26
Updated at:           2016/05/20 19:48:08

Comment 9 Bryan Kearney 2016-07-27 11:22:04 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory, and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHBA-2016:1501


Note You need to log in before you can comment on or make changes to this bug.