Federated users should not see change password page

Bug #1640537 reported by Elvin Tubillara
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
OpenStack Dashboard (Horizon)
Confirmed
Medium
Unassigned

Bug Description

Federated users see the change password page in settings.
They should not be able to see this page since they are not able
to do so since their passwords are not stored on the local service provider Keystone (because their passwords/credentials are managed by the identity provider).

Tags: keystone
tags: added: keystone
Revision history for this message
David Lyle (david-lyle) wrote :

is the thought to use the is_federated flag to hide the panel? https://github.com/openstack/django_openstack_auth/blob/master/openstack_auth/user.py#L197

Changed in horizon:
status: New → Confirmed
importance: Undecided → Medium
Ying Zuo (yingzuo)
Changed in horizon:
milestone: none → next
Revision history for this message
Gary W. Smith (gary-w-smith) wrote :

Per https://docs.openstack.org/keystone/latest/advanced-topics/federation/federated_identity.html#mapping-combinations, federated users are either local or ephemeral, and IIUC this restriction would only apply to ephemeral users. This is related to bug 163552.

To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.