Skip to content
GitLab
Projects Groups Topics Snippets
  • /
  • Help
    • Help
    • Support
    • Community forum
    • Submit feedback
    • Contribute to GitLab
  • Sign in
  • fusiondirectory fusiondirectory
  • Project information
    • Project information
    • Activity
    • Labels
    • Members
  • Repository
    • Repository
    • Files
    • Commits
    • Branches
    • Tags
    • Contributor statistics
    • Graph
    • Compare revisions
  • Issues 33
    • Issues 33
    • List
    • Boards
    • Service Desk
    • Milestones
  • Packages and registries
    • Packages and registries
    • Package Registry
    • Container Registry
    • Terraform modules
  • Activity
  • Graph
  • Create a new issue
  • Commits
  • Issue Boards
Collapse sidebar
  • fusiondirectoryfusiondirectory
  • fusiondirectoryfusiondirectory
  • Issues
  • #5949
Closed
Open
Issue created Jan 23, 2019 by bmortier@bmortierMaintainer

Using base scope in ACL does not work as expected

Description

Hello,

It looks like the aclrole as base not work like expected. When we assigned an aclrole on "." we can read the users in ou=people

Distribution Name and Version

Debian

FusionDirectory Version

1.3

PHP version used

php7

Origin of php packages

Distribution

Steps to Reproduce

  1. Create department /A and /B/A
  2. Assign the manager aclrole to a user (subtree for /A and /B/A) but as base for "."
  3. If you connect with your user you can see the users in "." and you can also write in /B

Expected behavior:

We cannot see the users in "." and we may not write in /B

Actual behavior:

We see the user in "." an we can write in /B

Reproduces how often: 100%

Edited Jun 11, 2019 by bmortier
Assignee
Assign to
Time tracking