← Back to team overview

yahoo-eng-team team mailing list archive

[Bug 1590805] Re: Revoking "admin" role from a group invalidates domain admin's token

 

I am reopening this issue so that someone can have a second look at the
problem?

** Summary changed:

- Revoking "admin" role from a group invalidates user token
+ Revoking "admin" role from a group invalidates domain admin's token

** Changed in: keystone
       Status: Invalid => New

-- 
You received this bug notification because you are a member of Yahoo!
Engineering Team, which is subscribed to OpenStack Identity (keystone).
https://bugs.launchpad.net/bugs/1590805

Title:
  Revoking "admin" role from a group invalidates domain admin's token

Status in OpenStack Identity (keystone):
  New

Bug description:
  Steps to reproduce

  1. Login as domain admin
  2. Create a new group and grant "admin" role to it.
  3. Group will be empty with no users added to it.(Domain admin won't be part of this group)
  4. Now revoke "admin" role from this group.
  5. Token for domain admin will be invalidated and he/she has to login again.

To manage notifications about this bug go to:
https://bugs.launchpad.net/keystone/+bug/1590805/+subscriptions


References