Openbravo Issue Tracking System - Modules
View Issue Details
0055546ModulesOpen APIpublic2024-05-22 09:462024-07-09 12:27
caristu 
Triage Platform Conn 
highminorhave not tried
closedfixed 
5
 
 
0055546: Roles with restricted backend access cannot see the Swagger Doc
Roles with restricted backend access cannot are unable to use the Swagger Doc
1) Configure a role with "Restrict backend access" field set as true
2) Set the role configured in step 1) as the default role for a user
3) Try to access to the swagger doc page. Note that an error is displayed, it is not possible to access to the doc.
No tags attached.
related to defect 0048976 closed Triage Platform Conn Modules Improve error when accessing to the Swagger Doc with a non authorized role 
related to defect 0055517 closed eugen_hamuraru Openbravo ERP Extra acess required when return full object is enabled on POST Synchronous requests 
related to feature request 0048366 closed caristu Retail Modules Split Retail API Infrastructure into a new module 
depends on backport 00559541.0.12 closed Triage Platform Conn Modules Roles with restricted backend access cannot see the Swagger Doc 
Issue History
2024-05-22 09:46caristuNew Issue
2024-05-22 09:46caristuAssigned To => Triage Platform Conn
2024-05-22 09:46caristuIssue generated from0048976
2024-05-22 09:46caristuRelationship addedrelated to 0048976
2024-05-22 09:46caristuRelationship addedrelated to 0055517
2024-05-22 09:53caristuSteps to Reproduce Updatedbug_revision_view_page.php?rev_id=28005#r28005
2024-05-22 09:53caristuSteps to Reproduce Updatedbug_revision_view_page.php?rev_id=28006#r28006
2024-06-11 12:40hgbotNote Added: 0165795
2024-06-11 12:45hgbotNote Added: 0165797
2024-06-19 12:13caristuRelationship addedrelated to 0048366
2024-06-19 18:10hgbotNote Added: 0166118
2024-06-19 19:09hgbotNote Added: 0166119
2024-06-20 17:04hgbotNote Added: 0166172
2024-06-21 09:19hgbotNote Added: 0166178
2024-06-21 09:49hgbotNote Added: 0166182
2024-06-21 09:49hgbotNote Added: 0166183
2024-06-21 09:51hgbotResolutionopen => fixed
2024-06-21 09:51hgbotStatusnew => closed
2024-06-21 09:51hgbotNote Added: 0166184
2024-06-21 09:51hgbotNote Added: 0166185
2024-06-21 09:51hgbotNote Added: 0166186
2024-06-21 09:52caristuNote Deleted: 0166178
2024-06-21 09:52caristuNote Deleted: 0166118
2024-07-09 12:26alostaleStatusclosed => new
2024-07-09 12:26alostaleResolutionfixed => open
2024-07-09 12:26alostaleStatusnew => acknowledged
2024-07-09 12:27alostaleStatusacknowledged => scheduled
2024-07-09 12:27alostaleStatusscheduled => resolved
2024-07-09 12:27alostaleResolutionopen => fixed
2024-07-09 12:27alostaleStatusresolved => closed

Notes
(0165795)
hgbot   
2024-06-11 12:40   
Merge Request created: https://gitlab.com/openbravo/product/openbravo/-/merge_requests/1274 [^]
(0165797)
hgbot   
2024-06-11 12:45   
Merge Request created: https://gitlab.com/openbravo/product/pmods/org.openbravo.service.openapi/-/merge_requests/11 [^]
(0166119)
hgbot   
2024-06-19 19:09   
Merge Request created: https://gitlab.com/openbravo/product/pmods/org.openbravo.api/-/merge_requests/285 [^]
(0166172)
hgbot   
2024-06-20 17:04   
Merge request closed: https://gitlab.com/openbravo/product/pmods/org.openbravo.api/-/merge_requests/285 [^]
(0166182)
hgbot   
2024-06-21 09:49   
Repository: https://gitlab.com/openbravo/product/openbravo [^]
Changeset: 8a963f49cac39f657eaf881aa1ec5b9053804be9
Author: Carlos Aristu <carlos.aristu@openbravo.com>
Date: 21-06-2024 09:15:05
URL: https://gitlab.com/openbravo/product/openbravo/-/commit/8a963f49cac39f657eaf881aa1ec5b9053804be9 [^]

related to BUG-55546: HSAS can define if access to the back office is needed

---
M src/org/openbravo/base/secureApp/DefaultOptions_data.xsql
M src/org/openbravo/base/secureApp/HttpSecureAppServlet.java
M src/org/openbravo/base/secureApp/LoginUtils.java
---
(0166183)
hgbot   
2024-06-21 09:49   
Merge request merged: https://gitlab.com/openbravo/product/openbravo/-/merge_requests/1274 [^]
(0166184)
hgbot   
2024-06-21 09:51   
Directly closing issue as related merge request is already approved.

Repository: https://gitlab.com/openbravo/product/pmods/org.openbravo.service.openapi [^]
Changeset: 1297d50c32ddc853d1385c59fc5c0724151ea0aa
Author: Carlos Aristu <carlos.aristu@openbravo.com>
Date: 21-06-2024 09:32:25
URL: https://gitlab.com/openbravo/product/pmods/org.openbravo.service.openapi/-/commit/1297d50c32ddc853d1385c59fc5c0724151ea0aa [^]

fixes BUG-55546: roles with restricted backend cannot access to swagger

---
M src/org/openbravo/service/openapi/provider/OpenAPIProviderServlet.java
---
(0166185)
hgbot   
2024-06-21 09:51   
Repository: https://gitlab.com/openbravo/product/pmods/org.openbravo.service.openapi [^]
Changeset: 0d4c6efe2d7f03abf099cafc2743acef66d13f87
Author: Carlos Aristu <carlos.aristu@openbravo.com>
Date: 21-06-2024 09:32:30
URL: https://gitlab.com/openbravo/product/pmods/org.openbravo.service.openapi/-/commit/0d4c6efe2d7f03abf099cafc2743acef66d13f87 [^]

related to BUG-55546: use default OB favicon

---
M src/org/openbravo/service/openapi/template/index.html.ftl
---
(0166186)
hgbot   
2024-06-21 09:51   
Merge request merged: https://gitlab.com/openbravo/product/pmods/org.openbravo.service.openapi/-/merge_requests/11 [^]