Skip to content

Commit

Permalink
Security: Warn that superuser has full access to fs
Browse files Browse the repository at this point in the history
  • Loading branch information
tonydamage committed Dec 19, 2023
1 parent 235079e commit d05e65c
Showing 1 changed file with 2 additions and 0 deletions.
2 changes: 2 additions & 0 deletions docs/security/authorization/configuration/index.adoc
Original file line number Diff line number Diff line change
Expand Up @@ -472,6 +472,8 @@ The following role gives a super-user powers:
</role>
----

IMPORTANT: This *Superuser* role and `authorization-3#all` role grants access to changing configuration and running custom scripts, users with this role could have full access to filesystem as per privilegies of midPoint user.

The default `administrator` user in midPoint is *not* hard-coded.
It is just a regular user which has the above role.
This gives super-user abilities to this user.
Expand Down

0 comments on commit d05e65c

Please sign in to comment.