Skip to Content.
Sympa Menu

grouper-users - RE: [grouper-users] readonly wheel group

Subject: Grouper Users - Open Discussion List

List archive

RE: [grouper-users] readonly wheel group


Chronological Thread 
  • From: "Hyzer, Chris" <>
  • To: Ben Beecher <>, "" <>
  • Subject: RE: [grouper-users] readonly wheel group
  • Date: Tue, 24 Jan 2017 16:01:41 +0000
  • Accept-language: en-US
  • Authentication-results: spf=none (sender IP is ) ;
  • Ironport-phdr: 9a23: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
  • Spamdiagnosticmetadata: NSPM
  • Spamdiagnosticoutput: 1:99

Does that mean they cant browse to the groups, or if they had a deep link to a group they cant read it?

 

Thanks

Chris

 

From: [mailto:] On Behalf Of Ben Beecher
Sent: Tuesday, January 24, 2017 11:00 AM
To:
Subject: [grouper-users] readonly wheel group

 

I created a readonly wheel group and added several staff members to the group. It worked fine for a while and it's not working any more. Those users don't have read access to any groups. Here is the relevant portion of the properties file:

 

$ cat /var/grouper/installGrouper2.3/grouper.apiBinary-2.3.0/conf/grouper.properties

 

# A readonly wheel group allows you to enable non-GrouperSystem subjects to act

# like a root user when reading the registry.

groups.wheel.readonly.use        = true

 

# Set to the name of the group you want to treat as the readonly wheel group.

# The members of this group will be treated as root-like users when reading objects.

groups.wheel.readonly.group      = etc:fullreadaccess

 

Ben




Archive powered by MHonArc 2.6.19.

Top of Page