Project

General

Profile

Actions

Bug #24232

closed

Non admin user is unable to see the audits for katello and taxable resources created by admin using Any Location context

Added by Marek Hulán over 6 years ago. Updated about 6 years ago.

Status:
Closed
Priority:
Normal
Category:
Audit Log
Target version:
-

Description

Cloned from https://bugzilla.redhat.com/show_bug.cgi?id=1600095

Description of problem:
unlike Admin, a regular user is not able to effectively use "Any Location" context on accessing Katello resources. So if Admin user creates a katello resource while having "Any Location" context set, audits for these actions and resources will not be visible to a regular user.

Version-Release number of selected component (if applicable):
6.4.0-11

How reproducible:
always

Steps to Reproduce:
1. create an organization (o1)
2. clone the "Auditor" role and assign the clone to the org (o1)
2. create a regular user (u1), belonging to org (o1), having "Org Admin" and the auditor clone roles assigned.
3. as an Admin user, set your location context to Any Location and organization context to o1
4. as an Admin user, create some katello resource (e.g. content view) OR architecture.
5. optional: as admin, check that the audits have been created
6. as u1, check the audits

Actual results:
u1 is unable to see any audits related to the resources created|manipulated in step #4 despite the fact that these belong to his organization.


Related issues 2 (0 open2 closed)

Related to Foreman - Bug #25039: No Audit entries found if you selected the Organization filter.DuplicateActions
Related to Foreman - Bug #25784: allowed_taxonomies always returns empty listClosedShimon ShteinActions
Actions

Also available in: Atom PDF