-
Bug
-
Resolution: Not a bug
-
Low
-
None
-
3.1.0, 3.0.10
Summary
When alterations to a permission scheme of a Service Desk projects have been made, the project administration page can display an error message as described on the following page:
https://confluence.atlassian.com/servicedesk/resolving-permission-scheme-errors-660967497.html
In order to make adjustments to permission schemes, a user is required to be a JIRA administrator. Project Administrators do not have the permission to make alterations to an existing permission scheme, or assign another permission scheme to a project.
The error message as describe on the page linked above also shows up from Project Administrators, and they can choose to update the the scheme accordingly. This is not in line with the permissions they have on the environment
Steps to Reproduce
- Create a user on a JIRA Service Desk instance and add it to the Service Desk license
- Create a Service Desk project and add the user from step 1 as Agent to it
- Grant the Agent the "Administer Projects" permission
- As a JIRA Administrator, remove the "Service Desk Customer - Portal Access" for one or several permissions to trigger the error message
- Log in as the Agent, and navigate to the Project Administration page
- The error message will display, click the button to fix the error
Expected Results
Since the Agent does not have the appropriate permissions to make alterations to permission schemes, or assign other permission schemes to a project, the option to fix the error should not be shown at all.
Actual Results
The Agent is able to fix the errors, which follows the exact steps as described under the "What does the Fix permissions button do" section of the page linked above
- was cloned as
-
QUALITY-294 Failed to load
Hi Atlassian
Can this be reopened please? Users are able to escalate their permissions and give themselves the ability to delete, which is a serious problem for us.
If your users want the "feature" changed, then shouldn't they be able to vote on it?
Regards
Maree