Uploaded image for project: 'Ranger'
  1. Ranger
  2. RANGER-74

Delegated admin can access all the policies through URL

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Resolved
    • Major
    • Resolution: Fixed
    • None
    • 0.4.0
    • None
    • None

    Description

      Steps to reproduce
      1] Create an internal user and make the user delegated admin of any policy.
      2] Login with that user and try to read different different policies from URL.

      Expected Result : User should be allowed to read only policies for which user has delegated admin rights.

      Actual Result : User can read all the policies from URL. Also User can see all policies in a repository as long as user has admin permission to any one policy in that repository (happens in both UI and API)

      Attachments

        Issue Links

          Activity

            People

              vel Velmurugan Periasamy
              vel Velmurugan Periasamy
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: