Timeline feature does not respect security constraint set by "add-group-repo" kie-cli command in BPM Suite 6.1.4
Environment
- Red Hat JBoss BPM Suite (BPMS) 6.1.4
Issue
- Via
Home -> Timelinefeature it is possible to change assets (url) with user who does not have group for the asset repo; add-group-repoallows access to the git repository only for user with specific group. However, when a user - not a member of this group - displays theHome -> Timelinefeature - he is still able toopen & edit & saveassets which are located in a protected git repository.
Resolution
It is an issue in BPM Suite 6.1.4 that has been fixed in Red Hat BPM Suite 6.2.
Root Cause
Please refers to BZ-1277586 for further details.
This solution is part of Red Hat’s fast-track publication program, providing a huge library of solutions that Red Hat engineers have created while supporting our customers. To give you the knowledge you need the instant it becomes available, these articles may be presented in a raw and unedited form.
Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.
