-
Notifications
You must be signed in to change notification settings - Fork 184
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
[QA] Last admin can remove himself #804
Comments
Accounts service was removed. Does this also work for LibreIDM? @rhafer |
Role assignments were never part of the accounts service. The described behaviour is still valid for the settings service (which currently is responsible for role assignments). The |
Currently the Graph API would allow for an admin to delete himself from the user database. So apart from fixing the Role Assignment to disallow the last admin removing it's assignment. I think we should also prevent admins to delete their own account via glauth. |
Duplicate of #3713 Closing here. |
Seen on v1.0.0-rc3 created with hetzner-deploy/make_ocis_eos_compose_test.sh (and earlier in v1.0.0-rc1 in #530 (comment))
Log in as moss,
The system is now without admin user. Moss can no longer go to the Accounts page.
Expected behaviour: Removing the last admin should not be possible. An error message appears, when trying.
The text was updated successfully, but these errors were encountered: