[jboss-jira] [JBoss JIRA] (WFLY-2085) Prevent server group scoped roles modifying the master HC if it has no servers

Jason Greene (JIRA) jira-events at lists.jboss.org
Fri Oct 4 17:42:10 EDT 2013


     [ https://issues.jboss.org/browse/WFLY-2085?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Jason Greene updated WFLY-2085:
-------------------------------

    Fix Version/s: 8.0.0.CR1
                       (was: 8.0.0.Beta1)

    
> Prevent server group scoped roles modifying the master HC if it has no servers
> ------------------------------------------------------------------------------
>
>                 Key: WFLY-2085
>                 URL: https://issues.jboss.org/browse/WFLY-2085
>             Project: WildFly
>          Issue Type: Sub-task
>          Components: Domain Management
>            Reporter: Brian Stansberry
>            Assignee: Brian Stansberry
>             Fix For: 8.0.0.CR1
>
>
> Currently server group scoped roles with write or security-sensitive-read privileges are able to use those privileges with any HC that has no servers defined. This allows the role to do things like add a server in the group to a newly spun up host.
> The master HC should be excluded from this ability. The master would typically not have servers, but not because it is a newly spun-up host.

--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators
For more information on JIRA, see: http://www.atlassian.com/software/jira


More information about the jboss-jira mailing list