Uploaded image for project: 'EJBCA'
  1. EJBCA
  2. ECA-7858

Not all certificate profiles shown in Issue Checker for limited admins

    Details

    • Type: Bug
    • Status: Closed
    • Priority: Minor
    • Resolution: Fixed
    • Affects Version/s: EJBCA 7.0.1
    • Fix Version/s: EJBCA 7.0.1
    • Component/s: CA GUI
    • Labels:
      None

      Description

      Currently, the "Issue Checker" does not show all the profiles shown in the "Certificate Profiles" page.

      This happens because the access check method that the Issue Checker uses does not allow access to profiles with "Any CA" selected if the admin does not have access to the /ca/ access rule.

      To reproduce
      1. Create a new certificate profile configured by cloning SERVER. Set the Available CA to "Any CA", but leave the other settings unchanged.
      2. View Home page. There should be a warning for the profile.
      3. Create a CA Admin with access to only one or a few CAs.
      4. Log with the CA Admin

      Actual results
      No warning is shown for the new profile. But it is listed under Certificate Profiles, so the admin does have (view) access to it.

      Expected results
      The warning for the new profile should be shown for the new CA Admin.

        Attachments

          Issue Links

            Activity

              People

              • Assignee:
                samuel Samuel Lidén Borell
                Reporter:
                samuel Samuel Lidén Borell
                Verified by:
                Ulf Undmark
              • Votes:
                0 Vote for this issue
                Watchers:
                1 Start watching this issue

                Dates

                • Created:
                  Updated:
                  Resolved:

                  Time Tracking

                  Estimated:
                  Original Estimate - 30 minutes
                  30m
                  Remaining:
                  Remaining Estimate - 0 minutes
                  0m
                  Logged:
                  Time Spent - 30 minutes
                  30m