Bug 2352499 - [Ceph-Dashboard] broken dashboard user access control perm issues
Summary: [Ceph-Dashboard] broken dashboard user access control perm issues
Keywords:
Status: CLOSED ERRATA
Alias: None
Product: Red Hat Ceph Storage
Classification: Red Hat Storage
Component: Ceph-Dashboard
Version: 8.1
Hardware: Unspecified
OS: Unspecified
unspecified
medium
Target Milestone: ---
: 8.1
Assignee: Nizamudeen
QA Contact: Vinayak Papnoi
Rivka Pollack
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2025-03-14 07:16 UTC by Nizamudeen
Modified: 2025-06-26 12:28 UTC (History)
5 users (show)

Fixed In Version: ceph-19.2.1-107.el9cp
Doc Type: If docs needed, set a value
Doc Text:
Clone Of:
Environment:
Last Closed: 2025-06-26 12:28:37 UTC
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Ceph Project Bug Tracker 70331 0 None None None 2025-03-14 07:16:14 UTC
Github ceph ceph pull 62149 0 None open mgr/dashboard: fix access control permissions for roles 2025-03-14 07:25:14 UTC
Github ceph ceph pull 62629 0 None open mgr/dashboard: add prometheus read permission to cluster_mgr role 2025-04-02 12:51:38 UTC
Red Hat Issue Tracker RHCEPH-10857 0 None None None 2025-03-14 07:17:22 UTC
Red Hat Issue Tracker RHCSDASH-1961 0 None None None 2025-03-14 07:17:26 UTC
Red Hat Product Errata RHSA-2025:9775 0 None None None 2025-06-26 12:28:41 UTC

Description Nizamudeen 2025-03-14 07:16:15 UTC
Description of problem:
https://tracker.ceph.com/issues/70331

for any roles like block-manager, file-manager or rgw-manager etc, the dashboard landing page goes Access Denied.

Multisite page was not accessible for read only user and rgw-manager user.

Multi-cluster nav is visible for all roles even if it its not accessible.

Empty icon in the top navbar when user is readonly


Version-Release number of selected component (if applicable):


How reproducible:


Steps to Reproduce:
1. 
2.
3.

Actual results:


Expected results:


Additional info:

Comment 1 Storage PM bot 2025-03-14 07:16:25 UTC
Please specify the severity of this bug. Severity is defined here:
https://bugzilla.redhat.com/page.cgi?id=fields.html#bug_severity.

Comment 19 errata-xmlrpc 2025-06-26 12:28:37 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory (Important: Red Hat Ceph Storage 8.1 security, bug fix, and enhancement updates), and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHSA-2025:9775


Note You need to log in before you can comment on or make changes to this bug.