Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

IBS is not warning if there's an attempt to enable the maintenance channels in a maintenance incident with a release request open #12746

Open
deneb-alpha opened this issue Jul 1, 2022 · 0 comments
Labels
Bug Frontend Things related to the OBS RoR app

Comments

@deneb-alpha
Copy link

Is your feature request related to a problem? Please describe.
the SUSE maintenance workflows is using channel files and patchinfo for defining to which products release a binary

As reported in openSUSE/osc#926, currently IBS doesn't have any validation in place for avoiding to perform the enablechannels command when the given maintenance incident has a release request open AND NOT in a final state.

Please, see also the full details of the issue reported in openSUSE/osc#926

Describe the solution you'd like
If the given incident has a release request open that isn't accepted revoked or declined, IBS should warn the user trying to issue the command and prevent to have the channels enabled.

Please, note that this feature should be valid only when a release request is in state review.

Describe alternatives you've considered
Implement internal validation on the maintsec-tools for preventing to issue the enablechannels command (see internal issue. this solution doesn't prevent a maintenance/security engineer to directly issue the osc command for enabling a channel.

Additional context
This is a follow-up from openSUSE/osc#926 where the advise was to report the problem on OBS and not on osc.

@deneb-alpha deneb-alpha changed the title IBS is not warning if the maintenance channels are enabled in a maintenance incident with a release request open IBS is not warning if there's an attempt to enable the maintenance channels in a maintenance incident with a release request open Jul 1, 2022
@hennevogel hennevogel added Bug Frontend Things related to the OBS RoR app labels Jul 4, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Bug Frontend Things related to the OBS RoR app
Projects
None yet
Development

No branches or pull requests

2 participants