Graylog Permissions Allow * if Created

(Jan Caster) #1

I currently have a use case where a specific Role needs to be able to edit resources (e.g. dashboards, pipelines, pipeline rules) that they created.

It appears that this is achievable with dashboards through the “dashboards:create:" permission without any "dashboards:edit:” permissions.
Is this because of the dashboard’s “creator_user_id” field?

Does this not apply to other resources? like pipelines/pipeline rules?

(Jan Doberstein) #2

yes that is the reason. This does currently not apply to any other resources and you might want to create a feature request for that.

(system) closed #3

