Solr
  1. Solr
  2. SOLR-8004

RuleBasedAuthorization plugin does not work for the collection-admin-edit permission

    Details

    • Type: Bug Bug
    • Status: Resolved
    • Priority: Major Major
    • Resolution: Fixed
    • Affects Version/s: 5.3
    • Fix Version/s: 5.3.1, 5.4, 6.0
    • Component/s: security
    • Labels:

      Description

      The admin requests do have a collection name and it should rely on the request type

        Activity

        Hide
        ASF subversion and git services added a comment -

        Commit 1700784 from Noble Paul in branch 'dev/trunk'
        [ https://svn.apache.org/r1700784 ]

        SOLR-8004: RuleBasedAuthorization plugin does not work for the collection-admin-edit permission

        Show
        ASF subversion and git services added a comment - Commit 1700784 from Noble Paul in branch 'dev/trunk' [ https://svn.apache.org/r1700784 ] SOLR-8004 : RuleBasedAuthorization plugin does not work for the collection-admin-edit permission
        Hide
        ASF subversion and git services added a comment -

        Commit 1700786 from Noble Paul in branch 'dev/branches/branch_5x'
        [ https://svn.apache.org/r1700786 ]

        SOLR-8004: RuleBasedAuthorization plugin does not work for the collection-admin-edit permission

        Show
        ASF subversion and git services added a comment - Commit 1700786 from Noble Paul in branch 'dev/branches/branch_5x' [ https://svn.apache.org/r1700786 ] SOLR-8004 : RuleBasedAuthorization plugin does not work for the collection-admin-edit permission
        Hide
        ASF subversion and git services added a comment -

        Commit 1700811 from Noble Paul in branch 'dev/branches/lucene_solr_5_3'
        [ https://svn.apache.org/r1700811 ]

        SOLR-8004: RuleBasedAuthorization plugin does not work for the collection-admin-edit permission

        Show
        ASF subversion and git services added a comment - Commit 1700811 from Noble Paul in branch 'dev/branches/lucene_solr_5_3' [ https://svn.apache.org/r1700811 ] SOLR-8004 : RuleBasedAuthorization plugin does not work for the collection-admin-edit permission
        Hide
        Daniel Davis added a comment -

        Manually verified against http://svn.apache.org/repos/asf/lucene/dev/branches/lucene_solr_5_3 revision 1702367 following description of the problem on solr-user. Modified /security.json to add:

        {
                "name":"collection-admin-edit",
                "role":"admin"
        }
        

        Ran curl -i to create a collection, and was challenged for a username/password.

        Show
        Daniel Davis added a comment - Manually verified against http://svn.apache.org/repos/asf/lucene/dev/branches/lucene_solr_5_3 revision 1702367 following description of the problem on solr-user. Modified /security.json to add: { "name":"collection-admin-edit", "role":"admin" } Ran curl -i to create a collection, and was challenged for a username/password.
        Hide
        Varun Thacker added a comment -

        Adding a BasicAuth tag

        Show
        Varun Thacker added a comment - Adding a BasicAuth tag

          People

          • Assignee:
            Noble Paul
            Reporter:
            Noble Paul
          • Votes:
            0 Vote for this issue
            Watchers:
            4 Start watching this issue

            Dates

            • Created:
              Updated:
              Resolved:

              Development