Uploaded image for project: 'Jira Cloud'
  1. Jira Cloud
  2. JSWCLOUD-6037

Restrict editing of the Sprint CF to users with Schedule permission for that issue

XMLWordPrintable

    • 2
    • Our product teams collect and evaluate feedback from a number of different sources. To learn more about how we use customer feedback in the planning process, check out our new feature policy.

      This is something I found randomly and I guess it makes sense for us to check. I tried this on a clean installation and reproduced many times in different ways. In a nutshell, I think the shortest path to demonstrate is the following:

      1. Let us say I have a project named ABC and a Rapid Board ABC Board containing issues from that project.
      2. I also have two users:
        1. charlie: All permissions on project ABC
        2. alpha: Only in jira-users, essentially only able to create issues in ABC (user has been added specifically in this example but it would work for him anyway):

      3. Project roles in ABC are like the following:
      4. charlie creates ABC-1:
      5. Then charlie adds ABC-1 to Sprint 1 (just created by him, also):
      6. The sprint id for that sprint is 1 (the address bar is from the sprint report):
      7. The Sprint field is also visible on all screens:
      8. Now user alpha tries to create an issue in JIRA. Remember that he cannot even browse project ABC but he can edit the Sprint Field and add the sprint id (1, in this case):
      9. ... so when he tries to view ABC-2 he cannot:
      10. However, ABC-2 has been added to the sprint:

      Should this be possible? Am I missing something, perhaps?

        1. 1-alphagroups.png
          1-alphagroups.png
          29 kB
        2. 2-createissues.png
          2-createissues.png
          40 kB
        3. 3-people.png
          3-people.png
          16 kB
        4. 4-create.png
          4-create.png
          30 kB
        5. 5-plan.png
          5-plan.png
          30 kB
        6. 6-sprintId.png
          6-sprintId.png
          16 kB
        7. 7-sprintfield.png
          7-sprintfield.png
          31 kB
        8. 8-alphacreatesissue.png
          8-alphacreatesissue.png
          67 kB
        9. 9-permissionviolation.png
          9-permissionviolation.png
          24 kB
        10. 10-issueadded.png
          10-issueadded.png
          57 kB

              Unassigned Unassigned
              ttzidamis Theodore Tzidamis (Inactive)
              Votes:
              7 Vote for this issue
              Watchers:
              13 Start watching this issue

                Created:
                Updated:
                Resolved: