Jay Guo created MESOS-7260: ------------------------------ Summary: Authorization for {{/role}} endpoint should take both {{view_roles}} and {{view_frameworks}} into account. Key: MESOS-7260 URL: https://issues.apache.org/jira/browse/MESOS-7260 Project: Mesos Issue Type: Bug Components: HTTP API, master Reporter: Jay Guo
Consider following case: both {{framework1}} and {{framework2}} subscribe to {{roleX}}, {{principal}} is allowed to view {{roleX}} and {{ framework1}}, but *NOT* {{framework2}}, therefore, {{/role}} endpoint should only contain {{framework1}}, but not both frameworks. -- This message was sent by Atlassian JIRA (v6.3.15#6346)