Project

General

Profile

Actions

Bug #6362

closed

top level menu item "Content" visible to normal user without any permission

Added by Dominic Cleal almost 10 years ago. Updated almost 6 years ago.

Status:
Closed
Priority:
Normal
Category:
Authentication
Target version:
Difficulty:
Triaged:
Fixed in Releases:
Found in Releases:

Description

Cloned from https://bugzilla.redhat.com/show_bug.cgi?id=1112182
Description of problem:
I created a simple user in "Any context" mode and did not assign any location, org and roles. But following menus are visible to that user.

Ideally user shouldn't be allowed to have access to any of menu items without any permission. Though content menu doesn't list sub menus but Hosts menu shows "All Hosts" and user can see the created hosts.

Version-Release number of selected component (if applicable):
sat6 beta snap10 compose2

How reproducible:
always

Steps to Reproduce:
1. Login with admin user
2. create a user in "Any context" and do not assign location and org
3. logout with admin user and login with newly created user

Actual results:
User can see Content menu and Hosts --> All hosts

Expected results:
user shouldn't be allowed to have access to any of menu items without any permission

Additional info:

Actions

Also available in: Atom PDF