Project

General

Profile

Actions

Bug #8673

closed

[RBAC] A user should not be able to create a role that exceeds their own permissions.

Added by Thomas McKay over 9 years ago. Updated about 8 years ago.

Status:
Duplicate
Priority:
Normal
Assignee:
-
Category:
Users, Roles and Permissions
Target version:
-
Difficulty:
Triaged:
Fixed in Releases:
Found in Releases:

Description

If a user is given role creation permissions, the roles they create should not have permissions that exceed their own. (eg. If a user has view hosts, then edit hosts should not be available to assign.)

Actions

Also available in: Atom PDF