Admin panel should be displayed only Cloud admin
Bug #1598047 reported by
Kenji Ishii
This bug affects 2 people
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
OpenStack Dashboard (Horizon) |
Confirmed
|
Medium
|
Unassigned |
Bug Description
In Mitaka, horizon supported domain scoped token[1].
When we use it, we can operate within specified domain scope.
However, if a user have admin role, Admin panel will display.
Information in Admin panel is not only current domain but also all domain.
Therefore, a user who are not operator(cloud admin) is also able to see other domain's info.
In addition, many operation which is allowed by 'admin' can be done by its user.
Originally, other components also should be addressed about keystone v3 model. But now it is not.
Changed in horizon: | |
assignee: | nobody → Kenji Ishii (ken-ishii) |
tags: | added: keysone |
Changed in horizon: | |
assignee: | Kenji Ishii (ken-ishii) → nobody |
status: | In Progress → New |
Changed in horizon: | |
status: | New → Confirmed |
importance: | Undecided → Medium |
To post a comment you must log in.
Fix proposed to branch: master /review. openstack. org/336431
Review: https:/