cloudstack-issues mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Nitin Mehta (JIRA)" <j...@apache.org>
Subject [jira] [Created] (CLOUDSTACK-5354) CLONE - normal users are not allowed to edit their own iso
Date Tue, 03 Dec 2013 22:57:35 GMT
Nitin Mehta created CLOUDSTACK-5354:
---------------------------------------

             Summary: CLONE - normal users are not allowed to edit their own iso
                 Key: CLOUDSTACK-5354
                 URL: https://issues.apache.org/jira/browse/CLOUDSTACK-5354
             Project: CloudStack
          Issue Type: Bug
      Security Level: Public (Anyone can view this level - this is the default.)
          Components: API
    Affects Versions: 4.2.0
            Reporter: Nitin Mehta
            Assignee: Nitin Mehta
             Fix For: 4.3.0


Repro steps:
1.Create a domain
2.create a account under that domain
3.create a ISO as a account under the non root domain
4.Edit the ISO

BUg :
gets message: 
Only ROOT admins are allowed to modify this attribute.

API:
http://10.147.38.141:8080/client/api?command=updateIsoPermissions&response=json&sessionkey=8rczMjm4sfljFOEi6dL2xT631sc%3D&id=2b8c87a0-4325-418d-80af-ce6f691edcd7&zoneid=bfdf7ac5-16c3-491e-aabd-f7ad696612b8&ispublic=false&isfeatured=false&isextractable=false&_=1372941865923

response:
{ "updateisopermissionsresponse" : {"uuidList":[],"errorcode":431,"cserrorcode":4350,"errortext":"Only
ROOT admins are allowed to modify this attribute."} }


This may be because in case of edit ISO we show  extractable and featured field as editable
to normal user , which normal user is not allowed to do  and api passes these as parameters

In case of template these fields are shown as non editable hence API passed does not contain
isfeatured and isextractable fields



--
This message was sent by Atlassian JIRA
(v6.1#6144)

Mime
View raw message