Skip to content

be a bit more explicit about the admin rights needed. - #1121

Merged
mbuechse merged 2 commits into
mainfrom
feat/be-explicit-about-admin
Feb 27, 2026
Merged

be a bit more explicit about the admin rights needed.#1121
mbuechse merged 2 commits into
mainfrom
feat/be-explicit-about-admin

Conversation

@fkr

@fkr fkr commented Feb 26, 2026

Copy link
Copy Markdown
Member

Found out the hard way by @mauhau

@berendt

berendt commented Feb 26, 2026

Copy link
Copy Markdown
Contributor

That's not correct. You only need admin permissions to create the required domains and users.

I added our internal test script for this to our testbed (osism/testbed#2850). This can create and delete the required users and domains with the admin cloud. For the script on the created users with the manager role are required.

@mbuechse
mbuechse marked this pull request as draft February 26, 2026 18:34
@mbuechse

Copy link
Copy Markdown
Contributor

@berendt Thanks. The script doesn't work with application credentials though. I'm not entirely sure why yet.

@fkr
fkr marked this pull request as ready for review February 27, 2026 13:30
fkr added 2 commits February 27, 2026 14:30
Found out the hard way by @mauhau

Signed-off-by: Felix Kronlage-Dammers <fkr@hazardous.org>
...but not that app creds don't work.
Thanks @berendt for clarification.

Signed-off-by: Felix Kronlage-Dammers <fkr@hazardous.org>
@fkr
fkr force-pushed the feat/be-explicit-about-admin branch from 38145ef to be1cb7a Compare February 27, 2026 13:30
@fkr
fkr requested a review from mbuechse February 27, 2026 13:30
@mbuechse
mbuechse merged commit 11d8713 into main Feb 27, 2026
10 checks passed
@mbuechse
mbuechse deleted the feat/be-explicit-about-admin branch February 27, 2026 13:33
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants