Uploaded image for project: 'OpenIDM'
  1. OpenIDM
  2. OPENIDM-14995

Privilege filter evaluation returns deny when same expression is used left and right of an 'or' condition

    XMLWordPrintable

    Details

    • Type: Bug
    • Status: Resolved
    • Priority: Minor
    • Resolution: Cannot Reproduce
    • Affects Version/s: 7.0.0
    • Fix Version/s: 7.2.0
    • Component/s: Module - Authorization
    • Labels:
    • Environment:
      7.0.0-SNAPSHOT" (build: 20200611190430, revision: c2458b3)
    • Target Version/s:
    • Story Points:
      1
    • Sprint:
      IDM - 2021.4
    • Season:
      2021.Spring

      Description

      Create a privilege which includes a query filter.
      Configure a query filter combining the same expression twice with an 'or', such as:
      (/effectiveOwner co "_id" or /effectiveOwner co "_id")

      Result: Privilege filter returns 403, even if the expression evaluates to true.

        Attachments

          Activity

            People

            Assignee:
            krismy.alfaro Krismy Alfaro
            Reporter:
            tim.vogt Tim Vogt
            Votes:
            0 Vote for this issue
            Watchers:
            3 Start watching this issue

              Dates

              Created:
              Updated:
              Resolved: