You are viewing a plain text version of this content. The canonical link for it is here.
Posted to dev@cloudstack.apache.org by "Sailaja Mada (JIRA)" <ji...@apache.org> on 2013/02/07 13:17:12 UTC

[jira] [Reopened] (CLOUDSTACK-1175) Only default Root admin is allowed to login Management Server

     [ https://issues.apache.org/jira/browse/CLOUDSTACK-1175?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Sailaja Mada reopened CLOUDSTACK-1175:
--------------------------------------


Tried with latest code:

Only Root domain users of type Domain-Admin are allowed to login Management Server. Hence reopening the bug. When tried with users of type user-account / Child domain admin/user account type users , it failed to verify signature.

2013-02-07 15:16:28,844 DEBUG [cloud.api.ApiServlet] (8200788@qtp-30208173-2:null) ===START===  10.252.224.85 -- POST  null
2013-02-07 15:16:28,847 DEBUG [cloud.user.AccountManagerImpl] (8200788@qtp-30208173-2:null) Attempting to log in user: user1 in domain 1
2013-02-07 15:16:28,847 DEBUG [server.auth.MD5UserAuthenticator] (8200788@qtp-30208173-2:null) Retrieving user: user1
2013-02-07 15:16:28,858 DEBUG [cloud.user.AccountManagerImpl] (8200788@qtp-30208173-2:null) User: user1 in domain 1 has successfully logged in
2013-02-07 15:16:28,874 DEBUG [cloud.api.ApiServlet] (8200788@qtp-30208173-2:null) ===END===  10.252.224.85 -- POST  null
2013-02-07 15:16:28,914 DEBUG [cloud.api.ApiServlet] (8200788@qtp-30208173-2:null) ===START===  10.252.224.85 -- GET  command=listCapabilities&response=json&sessionkey=vikAvO3ZLzfbhm1O8hL6IaJhY2Q%3D&_=1360230392794
2013-02-07 15:16:28,919 ERROR [cloud.api.ApiServer] (8200788@qtp-30208173-2:null) unable to verify request signature
2013-02-07 15:16:28,920 DEBUG [cloud.api.ApiServlet] (8200788@qtp-30208173-2:null) ===END===  10.252.224.85 -- GET  command=listCapabilities&response=json&sessionkey=vikAvO3ZLzfbhm1O8hL6IaJhY2Q%3D&_=1360230392794



                
> Only default Root admin is allowed to login Management Server
> -------------------------------------------------------------
>
>                 Key: CLOUDSTACK-1175
>                 URL: https://issues.apache.org/jira/browse/CLOUDSTACK-1175
>             Project: CloudStack
>          Issue Type: Bug
>      Security Level: Public(Anyone can view this level - this is the default.) 
>          Components: Management Server
>    Affects Versions: 4.1.0
>            Reporter: Sailaja Mada
>            Assignee: Kishan Kavala
>
> Observation:
> Create user/admin accounts under root domain.  I am not able login with these users. I tried with users under a new domain as well.
> =======================================================================================
> 2013-02-06 12:00:31,671 INFO  [cloud.api.ApiServer] (11296479@qtp-30212151-22:null)  10.144.7.13 -- POST command=login domain=/Failed to authenticate user newadmin1 in domain 1; please provide valid credentials =======================================================================================
> Only default Root admin is allowed to login Management Server.  

--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators
For more information on JIRA, see: http://www.atlassian.com/software/jira