Project

General

Custom queries

Profile

Actions

Bug #35153

closed

Katello 403 after pressing Sync button on a repository page

Added by Rossen G almost 3 years ago. Updated over 1 year ago.

Status:
Closed
Priority:
Normal
Assignee:
Category:
Roles and Permissions
Target version:

Description

I've created a user with a role limiting permissions to only be able to manage products and repositories. Includes permission to see tasks.]

1. Inside a product, select repository, and press "Sync Now", leads to task page with the sync task
2. Inside the repository, selecting either "Sync Now" or "Advanced Sync", leads to a Katello 403 page. The sync task is still created.

The issue is in that second case. Admin users do not experience the issue.

Actions #1

Updated by Lucy Fu almost 3 years ago

  • Target version set to Katello Backlog

Looks like an issue with permissions. Could you please provide information so we can reproduce the issue?
Thank you.

Actions #2

Updated by Rossen G almost 3 years ago

What kind of information do you need?

1. Create a non admin account, create role that has all product permission, give the role to the user so that the user has the role + default.
2. Create a product and repository
3. Go on the repository settings page, and select sync from the action menu top right
4. Get katello 403 error page

Actions #7

Updated by Samir Jha over 2 years ago

  • Status changed from Ready For Testing to Closed
Actions

Also available in: Atom PDF