[prev in list] [next in list] [prev in thread] [next in thread] 

List:       opennms-buglist
Subject:    [Buglist] [Bug 3135] New: KSC report viewing does not enforce ACLs
From:       bugzilla () opennms ! org (bugzilla at opennms ! org)
Date:       2009-04-27 16:01:30
Message-ID: bug-3135-627 () http ! bugzilla ! opennms ! org/
[Download RAW message or body]

http://bugzilla.opennms.org/show_bug.cgi?id=3135

           Summary: KSC report viewing does not enforce ACLs
           Product: OpenNMS
           Version: SVN, trunk
          Platform: PC
        OS/Version: All
            Status: NEW
          Severity: normal
          Priority: P1
         Component: webUI - ACLs
        AssignedTo: buglist at opennms.org
        ReportedBy: jeffg at opennms.org


Steps to reproduce:

1a. Create group "canhas" with all node categories included; add user "jeffg"
to this group
1b. Create group "nocanhas" with only "Production" node category; add user
"rjeffg" to this group
2.  Add node 1 to node categories "Servers", "Production"; add node 2 to
categories "Servers", "Development"
3. Log in as "jeffg", create a KSC report that includes resources from both
node 1 and node 2
4. Log out and log in as "rjeffg", view KSC report created in step 3, charts
from both nodes are visible despite node 2 being otherwise hidden from this
user's view.


-- 
Configure bugmail: http://bugzilla.opennms.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.

[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic