Project

General

Profile

Actions

Bug #27211

open

Cannot remove all rights from a user who has a single role, from the User management GUI

Added by Michel BOUISSOU 2 months ago. Updated 4 days ago.

Status:
Pending release
Priority:
2
Category:
Security
Target version:
Severity:
Minor - inconvenience | misleading | easy workaround
UX impact:
I hate Rudder for that
User visibility:
First impressions of Rudder
Effort required:
Very Small
Priority:
155
Name check:
To do
Fix check:
Checked
Regression:
No

Description

When a user is initially created with the GUI, it is created with “no rights”.

As soon as the user has been given one role, it is not possible to remove the only role the user has, because :

- The system refuses to delete the only role attributed to the user ;
- If one tries to add “no rights” again, it is removed when pressing [Save] as the user still has some other rights.
- It is impossible to remove the only rights the user have after having added “no rights” without having saved.

So it is possible to add a different role to a user, then remove the previous one, but it is not possible to remove all rights.

All that can be done is disable or remove the user.


Files

clipboard-202507171732-wyhfy.png (138 KB) clipboard-202507171732-wyhfy.png Clark ANDRIANASOLO, 2025-07-17 17:32

Subtasks 3 (2 open1 closed)

Bug #27310: User management API permissions in responses are empty when not updating themPending releaseClark ANDRIANASOLOActions
Bug #27449: Fix spotless in 27310Pending releaseVincent MEMBRÉActions
Bug #27315: Upmerge of API tests on user permissions in 9.0ReleasedFrançois ARMANDActions

Related issues 1 (1 open0 closed)

Related to Rudder - Enhancement #27520: When you add an user role, before saving it you can't remove itNewClark ANDRIANASOLOActions
Actions

Also available in: Atom PDF