-
Bug
-
Resolution: Timed out
-
Low
-
Severity 3 - Minor
-
Issue Summary
When support and admins have been impersonating users in their instance - this is not being correctly propogated through search. So understandably, they are not able to reproduce issues with other users or correctly retrieve the appropriate results for the impersonated user
Steps to Reproduce
- Impersonate the user through the admin UI
- Execute an advanced search for results that the impersonated user does not have permissions to
Expected Results
The search should NOT return the results the impersonated user does not have permissions to.
Actual Results
The search does return those results since the actual original user ( not the impersonated user) has permissions to see it.
...
Workaround
Currently there is no known workaround for this behavior. A workaround will be added here when available
- is duplicated by
-
CONFCLOUD-82523 During User Impersonation - impersonated account can access advanced search results that include pages they should not have permission to view.
-
- Gathering Impact
-
- relates to
-
AI-992 Impersonating a user returns results the user has no permissions to see
-
- Gathering Impact
-