No test for tokens using inherited domain role

Bug #1365147 reported by Samuel de Medeiros Queiroz
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
OpenStack Identity (keystone)
Fix Released
Low
Samuel de Medeiros Queiroz

Bug Description

If a user has an inherited role in a domain, he is able to get a token on every project inside that domain, even if he doesn't have a specific grant on that project.

Currently, there is no test for this feature, we should create it.

Changed in keystone:
assignee: nobody → Samuel de Medeiros Queiroz (samuel-z)
tags: added: test-improvement
Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Fix proposed to keystone (master)

Fix proposed to branch: master
Review: https://review.openstack.org/119206

Changed in keystone:
status: New → In Progress
Revision history for this message
Lance Bragstad (lbragstad) wrote :

Tagging as low-hanging-fruit since the fix for this bug should consist of adding a few tests. If it becomes problematic for some reason, feel free to remove the tag.

tags: added: low-hanging-fruit
Dolph Mathews (dolph)
Changed in keystone:
importance: Undecided → Low
Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Fix merged to keystone (master)

Reviewed: https://review.openstack.org/119206
Committed: https://git.openstack.org/cgit/openstack/keystone/commit/?id=e2589177d9d8b2b31609e77619afd6ae462d13e3
Submitter: Jenkins
Branch: master

commit e2589177d9d8b2b31609e77619afd6ae462d13e3
Author: Samuel de Medeiros Queiroz <email address hidden>
Date: Thu Sep 4 17:46:09 2014 -0300

    Add test for getting a token with inherited role

    If a user has an inherited role in a domain, he
    is able to get a token on every project inside
    that domain, even if he doesn't have a specific
    grant on that project.
    This patch adds a test for this behavior.

    Change-Id: Ib65cb3443559d3bb9b7ffc2b96237072d2b5be56
    Closes-Bug: 1365147

Changed in keystone:
status: In Progress → Fix Committed
Changed in keystone:
milestone: none → kilo-1
Thierry Carrez (ttx)
Changed in keystone:
status: Fix Committed → Fix Released
Thierry Carrez (ttx)
Changed in keystone:
milestone: kilo-1 → 2015.1.0
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.