Uploaded image for project: 'SEAD'
  1. SEAD
  2. SEAD-351

Permissions required for 'community' app break dashboard/discovery

XMLWordPrintableJSON

    • Icon: Task Task
    • Resolution: Fixed
    • Icon: Normal Normal
    • 1.0.1
    • None
    • None
    • None

      To retrieve sys/info anonymously, both the new VIEW-SYSTEM and remote api permissions were needed, but, allowing anonymous to use remote api w/o also having data and other permissions causes the dashboard/discovery apps to show partial info and fail w/o allowing people to login. A simple immediate fix is to make sys/info an independent permission. Longer term, we may want to revisit permissions to make them more orthogonal or to allow a remote app to assure that all necessary permissions are granted before trying to show content.

              jimmyers Jim Myers
              jimmyers Jim Myers
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated:
                Resolved: