Project

General

Profile

Actions

Bug #12415

closed

User with role containing edit_content_hosts filter cannot edit product content for a content host

Added by Luca Lorenzetto about 9 years ago. Updated over 6 years ago.

Status:
Rejected
Priority:
Normal
Category:
Roles and Permissions
Target version:
Difficulty:
easy
Triaged:
Fixed in Releases:
Found in Releases:

Description

I created a role containing the filter 'edit_content_hosts' (and many others).
The user with that role would like to change the "Product Content" section for a content host.
If changes the value of a certain repository, a return message ["You are not authorized to perform this action."] is shown.

I'm running katello katello-2.3.0-5.el6.noarch on foreman-1.9.0-1.el6.noarch

The role has the following filters:

(Miscellaneous) view_plugins, view_statistics
Sync Plans view_sync_plans, create_sync_plans, edit_sync_plans, destroy_sync_plans
Activation Keys view_activation_keys, create_activation_keys, edit_activation_keys, destroy_activation_keys
Audited/adapters/active record/audit view_audit_logs
Content Views view_content_views, create_content_views, edit_content_views, destroy_content_views, publish_content_views, promote_or_remove_content_views
Lifecycle Environment view_lifecycle_environments, create_lifecycle_environments, edit_lifecycle_environments, destroy_lifecycle_environments, promote_or_remove_content_views_to_environments
Product and Repositories view_products, create_products, edit_products, destroy_products, sync_products
Common parameter view_globals, create_globals, edit_globals, destroy_globals
Organization view_subscriptions, attach_subscriptions, unattach_subscriptions
Report view_reports, destroy_reports, upload_reports
Organization import_manifest, delete_manifest
Host Collections view_host_collections, create_host_collections, edit_host_collections, destroy_host_collections
Content Host view_content_hosts, create_content_hosts, edit_content_hosts, destroy_content_hosts
Host/managed puppetrun_hosts, edit_hosts
Host class edit_classes
Organization view_subscriptions, attach_subscriptions, unattach_subscriptions
Smart proxy view_smart_proxies_puppetca, edit_smart_proxies_puppetca, destroy_smart_proxies_puppetca

Actions #1

Updated by Eric Helms about 9 years ago

  • Category set to Roles and Permissions
  • Translation missing: en.field_release set to 70
  • Triaged changed from No to Yes
Actions #2

Updated by Justin Sherrill almost 9 years ago

  • Translation missing: en.field_release changed from 70 to 86
Actions #3

Updated by Eric Helms over 8 years ago

  • Translation missing: en.field_release changed from 86 to 144
Actions #4

Updated by Eric Helms over 8 years ago

  • Translation missing: en.field_release changed from 144 to 168
Actions #5

Updated by Eric Helms over 8 years ago

  • Translation missing: en.field_release deleted (168)
Actions #6

Updated by Justin Sherrill over 8 years ago

  • Assignee set to Christine Fouant
  • Translation missing: en.field_release set to 162
  • Difficulty set to easy
Actions #7

Updated by Christine Fouant over 8 years ago

  • Status changed from New to Rejected
  • Translation missing: en.field_release changed from 162 to 166

Are you still having this issue? It has been fixed in 3.0, however the user would need Host roles rather than Content Host.

Actions

Also available in: Atom PDF