SU-SWS / stanford_ssp

Drupal module for configuring SimpleSAMLphp in Stanford web environments
GNU General Public License v2.0
9 stars 8 forks source link

HSD8-613 If role_delegation module is enable, limit which roles a user can add in the saml user add form. #71

Closed pookmish closed 5 years ago

pookmish commented 5 years ago

READY FOR REVIEW

Summary

Needed By (Date)

Urgency

Steps to Test

  1. enable role_delegation and configure for a role
  2. go to the user add form as a user with limited role add permissions
  3. verify they can not add a user with an administrator role.

Affected Projects or Products

See Also

sherakama commented 5 years ago

Starting review of this now.

sherakama commented 5 years ago

I suspect this also in the D7 version. Should we backport?

pookmish commented 5 years ago

its likely its an issue in D7. but i dont see role_delegation in the stacks

sherakama commented 5 years ago

I know a guy. Let me talk to him.

I think this is a known issue and that we limit access to the role mapping form but I want to check.