Secret role restrictions not enforced via API #4146
Labels
status: accepted
This issue has been accepted for implementation
type: bug
A confirmed report of unexpected behavior in the application
Uh oh!
There was an error while loading. Please reload this page.
Environment
(seen also in this comment #2869 (comment) on closed ticket )
Steps to Reproduce
Expected Behavior
step 4 : unlock button is green and permit to add private key to session then see password
step 6 : unlock button is green and permit to add private key to session then see password
Observed Behavior
step 4 : unlock button is stil grey and permission deny message when try to use it
step 6 : we've got warning message : "you do not have permission to view secret"
The fact that we can see secret in step 8 is also an issue as the permission should works exactly the same way in any view.
Best regards,
Al
The text was updated successfully, but these errors were encountered: