Incorrect error code for unathorized policy on all_tenants and edit_managed attributes
Bug #1486709 reported by
Rudrajit Tapadar
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
Designate |
Fix Released
|
High
|
Hardik Parekh |
Bug Description
When using the --all-tenants or --edit-managed attributes for a user who doesn't have the privileges to run those attributes, designate fails with a 500 error. This should be a Forbidden (403) error.
The api.middleware unit tests should be updated to take care of the negative cases as well.
Changed in designate: | |
status: | New → Triaged |
importance: | Undecided → High |
milestone: | none → liberty-3 |
Changed in designate: | |
milestone: | liberty-3 → liberty-rc1 |
Changed in designate: | |
assignee: | nobody → hardik (hardik-parekh047) |
Changed in designate: | |
status: | Fix Committed → Fix Released |
Changed in designate: | |
milestone: | liberty-rc1 → 1.0.0 |
To post a comment you must log in.
Fix proposed to branch: master /review. openstack. org/223062
Review: https:/