Bug 1805430 - Non-admin user with view_subscriptions perms cannot view subscriptions
Summary: Non-admin user with view_subscriptions perms cannot view subscriptions
Keywords:
Status: CLOSED ERRATA
Alias: None
Product: Red Hat Satellite
Classification: Red Hat
Component: Subscription Management
Version: 6.7.0
Hardware: Unspecified
OS: Unspecified
unspecified
medium
Target Milestone: 6.7.0
Assignee: Jonathon Turel
QA Contact: Cole Higgins
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2020-02-20 19:02 UTC by Stephen Wadeley
Modified: 2020-04-14 13:38 UTC (History)
5 users (show)

Fixed In Version: tfm-rubygem-katello-3.14.0.20-1
Doc Type: If docs needed, set a value
Doc Text:
Clone Of:
Environment:
Last Closed: 2020-04-14 13:38:42 UTC
Target Upstream Version:
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Foreman Issue Tracker 29376 0 Normal Closed Non-admin user with view_subscriptions perms cannot view subscriptions 2020-04-01 12:40:57 UTC

Description Stephen Wadeley 2020-02-20 19:02:12 UTC
Description of problem:

A non-admin user cannot view subscriptions, in the same organization, in the web UI or on the CLI


Version-Release number of selected component (if applicable):

testing with latest snap: Streams > 6.7 > 6.7.0 > 12.0

[root@dhcp-3-235 ~]# rpm -q satellite
satellite-6.7.0-5.beta.el7sat.noarch
[root@dhcp-3-235 ~]# rpm -q tfm-rubygem-hammer_cli_katello
tfm-rubygem-hammer_cli_katello-0.20.2.2-1.el7sat.noarch

How reproducible:

Error was found while running test for a role with permission filters and it failed every time.

Steps to Reproduce:
As admin user:
1. create test org "nonadmintest"
2. add manifest to org "nonadmintest"
3. create user "non-admin"
4. create role and assign to user. 
5. Add perms to role:
assign_organizations, view_organizations
unattach_subscriptions, attach_subscriptions, view_subscriptions
6. logout and back in as non-admin user and try to view subscriptions.

Actual results:

There are no Subscriptions to display
Import a Manifest to manage your Entitlements.

Expected results:

I expect to see the subscriptions if view_subscriptions permissions assigned,
If they were not, i would expect to see "Permission denied"

Comment 9 Jonathon Turel 2020-03-19 02:28:43 UTC
Created redmine issue https://projects.theforeman.org/issues/29376 from this bug

Comment 12 Mike McCune 2020-03-20 20:38:06 UTC
mistakenly misinterpreted the above conversation to think this was ON_QA.

Comment 15 Bryan Kearney 2020-04-14 13:38:42 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory, and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHSA-2020:1454


Note You need to log in before you can comment on or make changes to this bug.