You are viewing a plain text version of this content. The canonical link for it is here.
Posted to issues@cloudstack.apache.org by "ASF subversion and git services (JIRA)" <ji...@apache.org> on 2013/12/03 23:55:35 UTC

[jira] [Commented] (CLOUDSTACK-3364) normal users are not allowed to edit their own iso

    [ https://issues.apache.org/jira/browse/CLOUDSTACK-3364?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=13838287#comment-13838287 ] 

ASF subversion and git services commented on CLOUDSTACK-3364:
-------------------------------------------------------------

Commit c1be40492460716502d62525418f1f712525bd7c in branch refs/heads/4.3 from [~nitinme]
[ https://git-wip-us.apache.org/repos/asf?p=cloudstack.git;h=c1be404 ]

CLOUDSTACK-3364:
change updateIsoPermissions API to accept isextractable paramter from normal user


> normal users are not allowed to edit their own iso
> --------------------------------------------------
>
>                 Key: CLOUDSTACK-3364
>                 URL: https://issues.apache.org/jira/browse/CLOUDSTACK-3364
>             Project: CloudStack
>          Issue Type: Bug
>      Security Level: Public(Anyone can view this level - this is the default.) 
>          Components: API
>    Affects Versions: 4.2.0
>            Reporter: shweta agarwal
>            Assignee: Nitin Mehta
>             Fix For: 4.3.0
>
>
> Repro steps:
> 1.Create a domain
> 2.create a account under that domain
> 3.create a ISO as a account under the non root domain
> 4.Edit the ISO
> BUg :
> gets message: 
> Only ROOT admins are allowed to modify this attribute.
> API:
> http://10.147.38.141:8080/client/api?command=updateIsoPermissions&response=json&sessionkey=8rczMjm4sfljFOEi6dL2xT631sc%3D&id=2b8c87a0-4325-418d-80af-ce6f691edcd7&zoneid=bfdf7ac5-16c3-491e-aabd-f7ad696612b8&ispublic=false&isfeatured=false&isextractable=false&_=1372941865923
> response:
> { "updateisopermissionsresponse" : {"uuidList":[],"errorcode":431,"cserrorcode":4350,"errortext":"Only ROOT admins are allowed to modify this attribute."} }
> This may be because in case of edit ISO we show  extractable and featured field as editable to normal user , which normal user is not allowed to do  and api passes these as parameters
> In case of template these fields are shown as non editable hence API passed does not contain isfeatured and isextractable fields



--
This message was sent by Atlassian JIRA
(v6.1#6144)