Bug 1384780 - Console allow to add same user multiple time while setting ACI
Summary: Console allow to add same user multiple time while setting ACI
Keywords:
Status: CLOSED WONTFIX
Alias: None
Product: Red Hat Directory Server
Classification: Red Hat
Component: Directory Console
Version: 10.0
Hardware: Unspecified
OS: Unspecified
unspecified
unspecified
Target Milestone: ---
: ---
Assignee: Noriko Hosoi
QA Contact: Viktor Ashirov
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2016-10-14 07:03 UTC by Kamlesh
Modified: 2016-10-23 22:39 UTC (History)
4 users (show)

Fixed In Version:
Doc Type: If docs needed, set a value
Doc Text:
Clone Of:
Environment:
Last Closed: 2016-10-21 20:23:54 UTC
Target Upstream Version:


Attachments (Terms of Use)
Screen-shot (922.11 KB, image/png)
2016-10-14 07:03 UTC, Kamlesh
no flags Details

Description Kamlesh 2016-10-14 07:03:42 UTC
Created attachment 1210400 [details]
Screen-shot

Description of problem:
While setting the ACI using console. it allow the add same user multiple times.

Version-Release number of selected component (if applicable):
idm-console-framework-1.1.17-1.el7dsrv.noarch
389-adminutil-1.1.23-2.el7dsrv.x86_64
libsss_nss_idmap-1.14.0-43.el7.x86_64
389-admin-1.1.45-2.el7dsrv.x86_64
389-ds-base-libs-1.3.5.10-11.el7.x86_64
389-ds-base-1.3.5.10-11.el7.x86_64
389-ds-console-doc-1.2.15-1.el7dsrv.noarch
redhat-idm-console-10.1.0-2.el7dsrv.x86_64
libsss_idmap-1.14.0-43.el7.x86_64
389-ds-console-1.2.15-1.el7dsrv.noarch
389-console-1.1.18-2.el7dsrv.noarch
libnfsidmap-0.25-15.el7.x86_64
389-admin-console-1.1.12-2.el7dsrv.noarch
389-admin-console-doc-1.1.12-2.el7dsrv.noarch

How reproducible:
100%

Steps to Reproduce:
1.in User tab click on the Add.. 
2.In Add User Tab click on any search result user press Add..
3.again Add the same user from the search result tab this will allow same user in the Access permission 

Actual results:
it allow to add same result

# ldapsearch -h localhost -p 389 -D "cn=Directory Manager" -w test1234 -b "ou=People,dc=idmqe,dc=lab,dc=eng,dc=bos,dc=redhat,dc=com" -s base "(objectclass=*)" aci

<snip>
aci: (targetattr = "telephoneNumber") (version 3.0;acl "Test";deny (all)(userd
 n = "ldap:///uid=tuser1,ou=People,dc=idmqe,dc=lab,dc=eng,dc=bos,dc=redhat,dc=
 com" or userdn = "ldap:///uid=tuser1,ou=People,dc=idmqe,dc=lab,dc=eng,dc=bos,
 dc=redhat,dc=com" or userdn = "ldap:///uid=tuser1,ou=People,dc=idmqe,dc=lab,d
 c=eng,dc=bos,dc=redhat,dc=com");)

</snip>
Result after the setting ACI

# ldapsearch -D "uid=tuser1,ou=People,dc=idmqe,dc=lab,dc=eng,dc=bos,dc=redhat,dc=com" -h qe-blade-01.idmqe.lab.eng.bos.redhat.com -p 389 -w test1234 -b "ou=People,dc=idmqe,dc=lab,dc=eng,dc=bos,dc=redhat,dc=com" cn telephonenumber -x -LLL
dn: ou=People,dc=idmqe,dc=lab,dc=eng,dc=bos,dc=redhat,dc=com

dn: uid=tuser1,ou=People,dc=idmqe,dc=lab,dc=eng,dc=bos,dc=redhat,dc=com
cn: test1 user1

dn: cn=tesGroup,ou=People,dc=idmqe,dc=lab,dc=eng,dc=bos,dc=redhat,dc=com
cn: tesGroup


Expected results:
only one time user can add

Comment 1 Noriko Hosoi 2016-10-14 19:33:22 UTC
I agree it is annoying, but there is no functionality problem, isn't there?

If so, I'd propose to lower the priority and push it to the next version (or close it with WONTFIX...)


Note You need to log in before you can comment on or make changes to this bug.