Eroma created AIRAVATA-1983:
-------------------------------

             Summary: Admin-read-only can change gateway wide credential store 
token. This should be restricted
                 Key: AIRAVATA-1983
                 URL: https://issues.apache.org/jira/browse/AIRAVATA-1983
             Project: Airavata
          Issue Type: Bug
          Components: PGA PHP Web Gateway
    Affects Versions: 0.16
         Environment: https://dev.seagrid.org
            Reporter: Eroma
             Fix For: 0.16


When user has admin-read-only role ideally should not be able to do any action 
in admin dashboard; only should be able to view everything.

Currently the admin-read-only can reset the token in admin dashboard.



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)

Reply via email to