Attempting to deactivate a queued image returns a 403
Bug #1445487 reported by
Luke Wollney
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
Glance |
Invalid
|
Low
|
Hemanth Makkapati |
Bug Description
Overview:
When attempting to deactivate a queued image (one without an image file) returns a "'403 Forbidden - Not allowed to deactivate image in status 'queued'".
Steps to reproduce:
1) Register a new image as user
2) Without uploading an image file, deactivate the image as admin via:
POST /images/
3) Notice that a "'403 Forbidden - Not allowed to deactivate image in status 'queued'" is returned
Expected:
A 400 response should be returned with the same message
Actual:
A 403 response is returned
Changed in glance: | |
assignee: | nobody → Hemanth Makkapati (hemanth-makkapati) |
To post a comment you must log in.
IMO, 403 seems to be reasonable here because,
400 response is returned for malformed request syntax or invalid request [1] and
403 response is returned if request was valid, but the server is refusing to respond to it [2].
Ref: [1] http:// www.w3. org/Protocols/ rfc2616/ rfc2616- sec10.html# sec10.4. 1
[2] http:// www.w3. org/Protocols/ rfc2616/ rfc2616- sec10.html# sec10.4. 4