Uploaded image for project: 'Camunda Optimize'
  1. Camunda Optimize
  2. OPT-1660

Authorization check can fail if user exist in multiple engines

XMLWordPrintable

    • Icon: Bug Report Bug Report
    • Resolution: Fixed
    • Icon: L3 - Default L3 - Default
    • 2.3.0
    • None
    • backend
    • authorization permissions

      Prerequisite:
      Say you have configured two engines, EA and EB, both using same user base (i.e. LDAP). Further, say AE grants optimize access to U while EB has not grant or a revoke for U.

      Expected behaviour:
      If U logs in, he will be granted to access optimize.

      Current behaviour:
      Non-deterministic, since check depends on the order in which engines are checked for authorizations.

        This is the controller panel for Smart Panels app

              Unassigned Unassigned
              ragnar.nevries Ragnar Nevries
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated:
                Resolved: