[jboss-jira] [JBoss JIRA] (WFLY-2085) Prevent server group scoped roles modifying the master HC if it has no servers
Jason Greene (JIRA)
jira-events at lists.jboss.org
Fri Oct 4 17:42:10 EDT 2013
[ https://issues.jboss.org/browse/WFLY-2085?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]
Jason Greene updated WFLY-2085:
-------------------------------
Fix Version/s: 8.0.0.CR1
(was: 8.0.0.Beta1)
> Prevent server group scoped roles modifying the master HC if it has no servers
> ------------------------------------------------------------------------------
>
> Key: WFLY-2085
> URL: https://issues.jboss.org/browse/WFLY-2085
> Project: WildFly
> Issue Type: Sub-task
> Components: Domain Management
> Reporter: Brian Stansberry
> Assignee: Brian Stansberry
> Fix For: 8.0.0.CR1
>
>
> Currently server group scoped roles with write or security-sensitive-read privileges are able to use those privileges with any HC that has no servers defined. This allows the role to do things like add a server in the group to a newly spun up host.
> The master HC should be excluded from this ability. The master would typically not have servers, but not because it is a newly spun-up host.
--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators
For more information on JIRA, see: http://www.atlassian.com/software/jira
More information about the jboss-jira
mailing list