Skip to content

Normal users with granted permission on listconfigurations/updateconfiguration are able to list and update global configurations #5494

@weizhouapache

Description

@weizhouapache
ISSUE TYPE
  • Bug Report
COMPONENT NAME
API
CLOUDSTACK VERSION
master
CONFIGURATION

N/A

OS / ENVIRONMENT

N/A

SUMMARY

as titile

STEPS TO REPRODUCE
1. create a role from Role 'User'
2. add listconfigurations and updateconfigurations to allow lists
3. create an account/user from the new role
4. list and update configuration by the user
EXPECTED RESULTS
user can only be able to list/update account settings
ACTUAL RESULTS
user is able to list/update account settings, domain settings, cluster settings, global settings, etc

Metadata

Metadata

Assignees

Type

No type

Projects

Milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions