[ http://wso2.org/jira/browse/REGISTRY-128?page=all ]

Krishantha Samaraweera updated REGISTRY-128:
--------------------------------------------

    Priority: Major  (was: Minor)

same issue is happening without adding admin role to the user. 

> "Authorize Allow" automatically set for users with admin role assigned.
> -----------------------------------------------------------------------
>
>                 Key: REGISTRY-128
>                 URL: http://wso2.org/jira/browse/REGISTRY-128
>             Project: WSO2 Registry
>          Issue Type: Bug
>    Affects Versions: SNAPSHOT
>         Environment: Ubuntu 7.10, JDK 1.5.0_08, tomcat 6.0.14, Firefox/2.0.0.8
>            Reporter: Krishantha Samaraweera
>         Assigned To: Chathura Ekanayake
>
> How to reproduce:
> 1. login as admin
> 2. create a new user with default role everyone.
> 3. now go to root level and set "write" permission to user.
> 4. now go to "Add role to user" pane and add admin role to that user.
> 5. now logout and sign-in as new user.
> 6. add a collection at root level (c1).
> 7. go inside the collection (c1)
> 8. check the user permission pane.
> now check the user permission pane. you will notice that "Authorize Allow" 
> permission is set for the user. Even If you remove the admin role from that 
> user, "Authorize allow" permission in c1 page will be remain as it is. So 
> that user can access to user permission page though c1 details page.

-- 
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators: 
http://wso2.org/jira/secure/Administrators.jspa
-
For more information on JIRA, see: http://www.atlassian.com/software/jira

        

_______________________________________________
Registry-dev mailing list
[email protected]
http://wso2.org/cgi-bin/mailman/listinfo/registry-dev

Reply via email to