Handle `organization_user` role more transparently
メンテナーはふだん 3 日以内に返信
@a-b がすでに取り組んでいます。
2024年9月6日 から。
評価
この issue はまだ評価されていません。
説明
What's the user value of this feature request?
Transparent handling of the organization_user role and with that less confusion and better usability.
Who is the functionality for?
Users who have org_manager or space_manager rights and assign space roles to users.
How often will this functionality be used by the user?
Quite frequently. Onboarding new developers to a space, or creating new orgs and spaces including rights for users is happening very often.
Who else is affected by the change?
The feature is backwards compatible in the first place.
Is your feature request related to a problem? Please describe.
When assigning a space role via set-space-role the CF CLI implicitly creates the organization_user role in the background. When removing the space role again, the organization_user role remains and is not easily removable by unset-org-role. Currently cf curl -X DELETE /v3/roles... needs to be used to remove the role.
Describe the solution you'd like
The role concept would be easier to understand if I have to first assign the organization_user role via set-org-role <user> <org> OrgUser, before assigning a space role via set-space-role.
If I want to remove the user completely I can then first remove the assigned space roles via unset-space-role and then remove the organization_user role with unset-org-role <user> <org> OrgUser.
It would be great if the automatic creation of the org user role could be removed from the set-space-role command. But this would require users to add an additional command to create the org user role before assigning the space role.
Describe alternatives you've considered
None
Additional context
There is already an open issue (https://github.com/cloudfoundry/cli/issues/2121), but it seems related to the V2 API, which back then assigned the organization_user role automatically when assigning an org role to a user. This is no longer the case with the V3 API. As CF CLI v7 and v8 use the V3 API, I thought it is better to open a new issue. (I think the old one could be closed, because the V2 API is no longer relevant for CF CLI)
Additionally I opened an issue on the CC (https://github.com/cloudfoundry/cloud_controller_ng/issues/3377), where I suggest allowing to assign space roles to users, who have any org role (e.g. Org Manager) and don't require that the user has the organization_user role. This is somewhat related, but the change, which I suggested here, could be realised independently.
- 主要言語
- Go
- スター
- 1.9k
- フォーク
- 989
- 平均マージ
- 4日 15時間
- マージ済み PR(30日)
- 8
環境構築
- Dockerfile・Docker Compose ファイルなし
- プルリクエストのテンプレートあり
- コントリビューションガイドを読む
はじめの一歩
- issue を最後まで読み、次にプロジェクトのコントリビューションガイドを読みます。
- 着手することを issue にコメントします — 二人が同じ作業をするのを防げます。
- リポジトリをフォークし、ブランチを切って変更します。
- issue 番号を参照したプルリクエストを送ります。
cloudfoundry/cli のほかの issue
-
難易度 4/5 3〜5日 初心者へのやさしさ 52/100
cloudfoundry/cli#3866 ·
メンテナーはふだん 3 日以内に返信
-
難易度 4/5 3〜5日 初心者へのやさしさ 45/100
cloudfoundry/cli#3863 · コメント 2 件 · リアクション 1 件 ·
メンテナーはふだん 3 日以内に返信
-
難易度 5/5 1週間以上 初心者へのやさしさ 45/100
cloudfoundry/cli#3851 · コメント 1 件 · リアクション 1 件 ·
メンテナーはふだん 3 日以内に返信
-
難易度 3/5 1〜2日 初心者へのやさしさ 62/100
cloudfoundry/cli#3794 ·
メンテナーはふだん 3 日以内に返信
-
難易度 3/5 1〜2日 初心者へのやさしさ 48/100
cloudfoundry/cli#3787 · コメント 1 件 ·
メンテナーはふだん 3 日以内に返信
cloudfoundry/cli の issue をすべて見る
似ている issue
-
cvss-severity:high devguard l3montree-cybersecurity/devguard/devguard pkg:golang/github.com/l3montree-dev/devguard risk:low state:open
難易度 2/5 1〜3時間 初心者へのやさしさ 65/100
l3montree-dev/devguard#3146 · コメント 1 件 ·
メンテナーはふだん 1 日以内に返信
-
CLI
難易度 2/5 1〜3時間 初心者へのやさしさ 82/100
databricks/cli#6910 ·
メンテナーはふだん 1 日以内に返信
-
Table presenter appends a spurious ", ..." to the FIX column when all fix versions are already shownオープン
難易度 2/5 1〜3時間 初心者へのやさしさ 88/100
メンテナーはふだん 1 日以内に返信
-
難易度 2/5 1〜3時間 初心者へのやさしさ 72/100
canonical/microceph#900 · コメント 1 件 ·
メンテナーはふだん 1 日以内に返信
-
vulncheck or vulndb
難易度 2/5 1〜3時間 初心者へのやさしさ 84/100
メンテナーはふだん 1 日以内に返信