[jira] [Commented] (CLOUDSTACK-6474) IAM - Not able to list shared networks that is created with scope=all

2014-04-23 Thread ASF subversion and git services (JIRA)

[ 
https://issues.apache.org/jira/browse/CLOUDSTACK-6474?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanelfocusedCommentId=13977996#comment-13977996
 ] 

ASF subversion and git services commented on CLOUDSTACK-6474:
-

Commit 52f40433b9dbc5d78e7000410da09cb7f55e499f in cloudstack's branch 
refs/heads/4.4 from [~prachidamle]
[ https://git-wip-us.apache.org/repos/asf?p=cloudstack.git;h=52f4043 ]

CLOUDSTACK-6474: IAM - Not able to list shared networks that is created with 
scope=all

Changes:
- On startup the root domain group should be created
- Also the SYSTEM and Root Admin accounts should be added to that group
- This will make sure that the root domain shared network's policy gets 
attached to the root domain group


 IAM - Not able to list shared networks that is created with scope=all
 ---

 Key: CLOUDSTACK-6474
 URL: https://issues.apache.org/jira/browse/CLOUDSTACK-6474
 Project: CloudStack
  Issue Type: Bug
  Security Level: Public(Anyone can view this level - this is the 
 default.) 
  Components: IAM
Affects Versions: 4.4.0
 Environment: Build from 4.4
Reporter: Sangeetha Hariharan
Assignee: Prachi Damle
Priority: Critical
 Fix For: 4.4.0


 IAM - Not able to list shared networks that is created with scope=all
 Steps to reproduce the problem:
 As admin , create a shared network with scope=all.
 As regular user , tried to list networks. No shared network is returned.
 http://10.223.49.6:8080/client/api?command=listNetworksresponse=jsonsessionkey=wOwS556QDduN5hRqHf1PU3gPBEw%3DlistAll=truepage=1pagesize=20_=1398206302627
 listnetworksresponse : { } }
 As admin user , I am able to list this network:
 http://10.223.49.6:8080/client/api?command=listNetworksresponse=jsonsessionkey=58UVhAXG49kJHSOENDGphnXDEh4%3DlistAll=truepage=1pagesize=20_=1398206454900
 { listnetworksresponse : { count:3 ,network : [  
 {id:65324d0a-5571-4e96-aebe-89d45fbabc72,name:test-domain,displaytext:test-domain,broadcastdomaintype:Vlan,traffictype:Guest,gateway:10.223.1.1,netmask:255.255.255.0,cidr:10.223.1.0/24,zoneid:75d61334-ff70-49c3-99ed-3af702cd51d7,zonename:BLR1,networkofferingid:564de11f-a786-44cf-a729-c4683a12dfe0,networkofferingname:DefaultSharedNetworkOfferingWithSGService,networkofferingdisplaytext:Offering
  for Shared Security group enabled 
 networks,networkofferingconservemode:true,networkofferingavailability:Optional,issystem:false,state:Setup,related:65324d0a-5571-4e96-aebe-89d45fbabc72,broadcasturi:vlan://501,dns1:4.2.2.2,type:Shared,vlan:501,acltype:Domain,subdomainaccess:false,domainid:691ab662-6793-42a0-96e6-3b31a2c4e52d,domain:D1,service:[{name:UserData},{name:Dns,capability:[{name:AllowDnsSuffixModification,value:true,canchooseservicecapability:false}]},{name:Dhcp,capability:[{name:DhcpAccrossMultipleSubnets,value:true,canchooseservicecapability:false}]},{name:SecurityGroup}],networkdomain:cs1cloud.internal,physicalnetworkid:3856a5bc-8509-4a7f-a92e-86146cbc6bc1,restartrequired:false,specifyipranges:true,canusefordeploy:true,ispersistent:false,tags:[],displaynetwork:true,strechedl2subnet:false},
  
 {id:49146336-bf81-4861-a2bd-5c92efc14cff,name:test,displaytext:test,broadcastdomaintype:Vlan,traffictype:Guest,gateway:10.223.1.1,netmask:255.255.255.0,cidr:10.223.1.0/24,zoneid:75d61334-ff70-49c3-99ed-3af702cd51d7,zonename:BLR1,networkofferingid:564de11f-a786-44cf-a729-c4683a12dfe0,networkofferingname:DefaultSharedNetworkOfferingWithSGService,networkofferingdisplaytext:Offering
  for Shared Security group enabled 
 networks,networkofferingconservemode:true,networkofferingavailability:Optional,issystem:false,state:Setup,related:49146336-bf81-4861-a2bd-5c92efc14cff,broadcasturi:vlan://500,dns1:4.2.2.2,type:Shared,vlan:500,acltype:Domain,subdomainaccess:true,domainid:e5e2ad7a-c019-11e3-907f-4adf980f9414,domain:ROOT,service:[{name:UserData},{name:Dns,capability:[{name:AllowDnsSuffixModification,value:true,canchooseservicecapability:false}]},{name:Dhcp,capability:[{name:DhcpAccrossMultipleSubnets,value:true,canchooseservicecapability:false}]},{name:SecurityGroup}],networkdomain:cs1cloud.internal,physicalnetworkid:3856a5bc-8509-4a7f-a92e-86146cbc6bc1,restartrequired:false,specifyipranges:true,canusefordeploy:true,ispersistent:false,tags:[],displaynetwork:true,strechedl2subnet:false},
  
 {id:aee03e51-468e-4311-aebc-827d9a43adf0,name:test,displaytext:test,broadcastdomaintype:Vlan,traffictype:Guest,gateway:10.1.1.1,netmask:255.255.255.0,cidr:10.1.1.0/24,zoneid:75d61334-ff70-49c3-99ed-3af702cd51d7,zonename:BLR1,networkofferingid:987d8feb-73b5-4f01-9152-6680a31bc60a,networkofferingname:DefaultIsolatedNetworkOfferingWithSourceNatService,networkofferingdisplaytext:Offering
  for Isolated networks with Source Nat service 
 

[jira] [Commented] (CLOUDSTACK-6474) IAM - Not able to list shared networks that is created with scope=all

2014-04-22 Thread Prachi Damle (JIRA)

[ 
https://issues.apache.org/jira/browse/CLOUDSTACK-6474?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanelfocusedCommentId=13977582#comment-13977582
 ] 

Prachi Damle commented on CLOUDSTACK-6474:
--

Root cause is there is no group created for the root domain. 
Fix will be to create a group for the root domain if not found, on server 
startup.





 IAM - Not able to list shared networks that is created with scope=all
 ---

 Key: CLOUDSTACK-6474
 URL: https://issues.apache.org/jira/browse/CLOUDSTACK-6474
 Project: CloudStack
  Issue Type: Bug
  Security Level: Public(Anyone can view this level - this is the 
 default.) 
  Components: IAM
Affects Versions: 4.4.0
 Environment: Build from 4.4
Reporter: Sangeetha Hariharan
Assignee: Prachi Damle
Priority: Critical
 Fix For: 4.4.0


 IAM - Not able to list shared networks that is created with scope=all
 Steps to reproduce the problem:
 As admin , create a shared network with scope=all.
 As regular user , tried to list networks. No shared network is returned.
 http://10.223.49.6:8080/client/api?command=listNetworksresponse=jsonsessionkey=wOwS556QDduN5hRqHf1PU3gPBEw%3DlistAll=truepage=1pagesize=20_=1398206302627
 listnetworksresponse : { } }
 As admin user , I am able to list this network:
 http://10.223.49.6:8080/client/api?command=listNetworksresponse=jsonsessionkey=58UVhAXG49kJHSOENDGphnXDEh4%3DlistAll=truepage=1pagesize=20_=1398206454900
 { listnetworksresponse : { count:3 ,network : [  
 {id:65324d0a-5571-4e96-aebe-89d45fbabc72,name:test-domain,displaytext:test-domain,broadcastdomaintype:Vlan,traffictype:Guest,gateway:10.223.1.1,netmask:255.255.255.0,cidr:10.223.1.0/24,zoneid:75d61334-ff70-49c3-99ed-3af702cd51d7,zonename:BLR1,networkofferingid:564de11f-a786-44cf-a729-c4683a12dfe0,networkofferingname:DefaultSharedNetworkOfferingWithSGService,networkofferingdisplaytext:Offering
  for Shared Security group enabled 
 networks,networkofferingconservemode:true,networkofferingavailability:Optional,issystem:false,state:Setup,related:65324d0a-5571-4e96-aebe-89d45fbabc72,broadcasturi:vlan://501,dns1:4.2.2.2,type:Shared,vlan:501,acltype:Domain,subdomainaccess:false,domainid:691ab662-6793-42a0-96e6-3b31a2c4e52d,domain:D1,service:[{name:UserData},{name:Dns,capability:[{name:AllowDnsSuffixModification,value:true,canchooseservicecapability:false}]},{name:Dhcp,capability:[{name:DhcpAccrossMultipleSubnets,value:true,canchooseservicecapability:false}]},{name:SecurityGroup}],networkdomain:cs1cloud.internal,physicalnetworkid:3856a5bc-8509-4a7f-a92e-86146cbc6bc1,restartrequired:false,specifyipranges:true,canusefordeploy:true,ispersistent:false,tags:[],displaynetwork:true,strechedl2subnet:false},
  
 {id:49146336-bf81-4861-a2bd-5c92efc14cff,name:test,displaytext:test,broadcastdomaintype:Vlan,traffictype:Guest,gateway:10.223.1.1,netmask:255.255.255.0,cidr:10.223.1.0/24,zoneid:75d61334-ff70-49c3-99ed-3af702cd51d7,zonename:BLR1,networkofferingid:564de11f-a786-44cf-a729-c4683a12dfe0,networkofferingname:DefaultSharedNetworkOfferingWithSGService,networkofferingdisplaytext:Offering
  for Shared Security group enabled 
 networks,networkofferingconservemode:true,networkofferingavailability:Optional,issystem:false,state:Setup,related:49146336-bf81-4861-a2bd-5c92efc14cff,broadcasturi:vlan://500,dns1:4.2.2.2,type:Shared,vlan:500,acltype:Domain,subdomainaccess:true,domainid:e5e2ad7a-c019-11e3-907f-4adf980f9414,domain:ROOT,service:[{name:UserData},{name:Dns,capability:[{name:AllowDnsSuffixModification,value:true,canchooseservicecapability:false}]},{name:Dhcp,capability:[{name:DhcpAccrossMultipleSubnets,value:true,canchooseservicecapability:false}]},{name:SecurityGroup}],networkdomain:cs1cloud.internal,physicalnetworkid:3856a5bc-8509-4a7f-a92e-86146cbc6bc1,restartrequired:false,specifyipranges:true,canusefordeploy:true,ispersistent:false,tags:[],displaynetwork:true,strechedl2subnet:false},
  
 {id:aee03e51-468e-4311-aebc-827d9a43adf0,name:test,displaytext:test,broadcastdomaintype:Vlan,traffictype:Guest,gateway:10.1.1.1,netmask:255.255.255.0,cidr:10.1.1.0/24,zoneid:75d61334-ff70-49c3-99ed-3af702cd51d7,zonename:BLR1,networkofferingid:987d8feb-73b5-4f01-9152-6680a31bc60a,networkofferingname:DefaultIsolatedNetworkOfferingWithSourceNatService,networkofferingdisplaytext:Offering
  for Isolated networks with Source Nat service 
 

[jira] [Commented] (CLOUDSTACK-6474) IAM - Not able to list shared networks that is created with scope=all

2014-04-22 Thread ASF subversion and git services (JIRA)

[ 
https://issues.apache.org/jira/browse/CLOUDSTACK-6474?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanelfocusedCommentId=13977721#comment-13977721
 ] 

ASF subversion and git services commented on CLOUDSTACK-6474:
-

Commit be10b32b273bed1a1492f02b943b168195e762c0 in cloudstack's branch 
refs/heads/4.4-forward from [~prachidamle]
[ https://git-wip-us.apache.org/repos/asf?p=cloudstack.git;h=be10b32 ]

CLOUDSTACK-6474: IAM - Not able to list shared networks that is created with 
scope=all

Changes:
- On startup the root domain group should be created
- Also the SYSTEM and Root Admin accounts should be added to that group
- This will make sure that the root domain shared network's policy gets 
attached to the root domain group


 IAM - Not able to list shared networks that is created with scope=all
 ---

 Key: CLOUDSTACK-6474
 URL: https://issues.apache.org/jira/browse/CLOUDSTACK-6474
 Project: CloudStack
  Issue Type: Bug
  Security Level: Public(Anyone can view this level - this is the 
 default.) 
  Components: IAM
Affects Versions: 4.4.0
 Environment: Build from 4.4
Reporter: Sangeetha Hariharan
Assignee: Prachi Damle
Priority: Critical
 Fix For: 4.4.0


 IAM - Not able to list shared networks that is created with scope=all
 Steps to reproduce the problem:
 As admin , create a shared network with scope=all.
 As regular user , tried to list networks. No shared network is returned.
 http://10.223.49.6:8080/client/api?command=listNetworksresponse=jsonsessionkey=wOwS556QDduN5hRqHf1PU3gPBEw%3DlistAll=truepage=1pagesize=20_=1398206302627
 listnetworksresponse : { } }
 As admin user , I am able to list this network:
 http://10.223.49.6:8080/client/api?command=listNetworksresponse=jsonsessionkey=58UVhAXG49kJHSOENDGphnXDEh4%3DlistAll=truepage=1pagesize=20_=1398206454900
 { listnetworksresponse : { count:3 ,network : [  
 {id:65324d0a-5571-4e96-aebe-89d45fbabc72,name:test-domain,displaytext:test-domain,broadcastdomaintype:Vlan,traffictype:Guest,gateway:10.223.1.1,netmask:255.255.255.0,cidr:10.223.1.0/24,zoneid:75d61334-ff70-49c3-99ed-3af702cd51d7,zonename:BLR1,networkofferingid:564de11f-a786-44cf-a729-c4683a12dfe0,networkofferingname:DefaultSharedNetworkOfferingWithSGService,networkofferingdisplaytext:Offering
  for Shared Security group enabled 
 networks,networkofferingconservemode:true,networkofferingavailability:Optional,issystem:false,state:Setup,related:65324d0a-5571-4e96-aebe-89d45fbabc72,broadcasturi:vlan://501,dns1:4.2.2.2,type:Shared,vlan:501,acltype:Domain,subdomainaccess:false,domainid:691ab662-6793-42a0-96e6-3b31a2c4e52d,domain:D1,service:[{name:UserData},{name:Dns,capability:[{name:AllowDnsSuffixModification,value:true,canchooseservicecapability:false}]},{name:Dhcp,capability:[{name:DhcpAccrossMultipleSubnets,value:true,canchooseservicecapability:false}]},{name:SecurityGroup}],networkdomain:cs1cloud.internal,physicalnetworkid:3856a5bc-8509-4a7f-a92e-86146cbc6bc1,restartrequired:false,specifyipranges:true,canusefordeploy:true,ispersistent:false,tags:[],displaynetwork:true,strechedl2subnet:false},
  
 {id:49146336-bf81-4861-a2bd-5c92efc14cff,name:test,displaytext:test,broadcastdomaintype:Vlan,traffictype:Guest,gateway:10.223.1.1,netmask:255.255.255.0,cidr:10.223.1.0/24,zoneid:75d61334-ff70-49c3-99ed-3af702cd51d7,zonename:BLR1,networkofferingid:564de11f-a786-44cf-a729-c4683a12dfe0,networkofferingname:DefaultSharedNetworkOfferingWithSGService,networkofferingdisplaytext:Offering
  for Shared Security group enabled 
 networks,networkofferingconservemode:true,networkofferingavailability:Optional,issystem:false,state:Setup,related:49146336-bf81-4861-a2bd-5c92efc14cff,broadcasturi:vlan://500,dns1:4.2.2.2,type:Shared,vlan:500,acltype:Domain,subdomainaccess:true,domainid:e5e2ad7a-c019-11e3-907f-4adf980f9414,domain:ROOT,service:[{name:UserData},{name:Dns,capability:[{name:AllowDnsSuffixModification,value:true,canchooseservicecapability:false}]},{name:Dhcp,capability:[{name:DhcpAccrossMultipleSubnets,value:true,canchooseservicecapability:false}]},{name:SecurityGroup}],networkdomain:cs1cloud.internal,physicalnetworkid:3856a5bc-8509-4a7f-a92e-86146cbc6bc1,restartrequired:false,specifyipranges:true,canusefordeploy:true,ispersistent:false,tags:[],displaynetwork:true,strechedl2subnet:false},
  
 {id:aee03e51-468e-4311-aebc-827d9a43adf0,name:test,displaytext:test,broadcastdomaintype:Vlan,traffictype:Guest,gateway:10.1.1.1,netmask:255.255.255.0,cidr:10.1.1.0/24,zoneid:75d61334-ff70-49c3-99ed-3af702cd51d7,zonename:BLR1,networkofferingid:987d8feb-73b5-4f01-9152-6680a31bc60a,networkofferingname:DefaultIsolatedNetworkOfferingWithSourceNatService,networkofferingdisplaytext:Offering
  for Isolated networks with Source Nat service