From f80c52ba387d523a1dffac4ac4f5cf2135f11cc2 Mon Sep 17 00:00:00 2001 From: jasquat <2487833+jasquat@users.noreply.github.com> Date: Thu, 29 Jun 2023 09:35:18 -0400 Subject: [PATCH] update basic permission set for callers to allow for processes to be passed in (#362) Co-authored-by: jasquat --- .../src/spiffworkflow_backend/services/authorization_service.py | 2 +- .../spiffworkflow_backend/unit/test_authorization_service.py | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/spiffworkflow-backend/src/spiffworkflow_backend/services/authorization_service.py b/spiffworkflow-backend/src/spiffworkflow_backend/services/authorization_service.py index ace0324fa..5f87b56fe 100644 --- a/spiffworkflow-backend/src/spiffworkflow_backend/services/authorization_service.py +++ b/spiffworkflow-backend/src/spiffworkflow_backend/services/authorization_service.py @@ -501,7 +501,7 @@ class AuthorizationService: permissions_to_assign.append(PermissionToAssign(permission="read", target_uri="/process-groups")) permissions_to_assign.append(PermissionToAssign(permission="read", target_uri="/process-models")) permissions_to_assign.append(PermissionToAssign(permission="read", target_uri="/processes")) - permissions_to_assign.append(PermissionToAssign(permission="read", target_uri="/processes/callers")) + permissions_to_assign.append(PermissionToAssign(permission="read", target_uri="/processes/callers/*")) permissions_to_assign.append(PermissionToAssign(permission="read", target_uri="/service-tasks")) permissions_to_assign.append(PermissionToAssign(permission="read", target_uri="/user-groups/for-current-user")) permissions_to_assign.append(PermissionToAssign(permission="read", target_uri="/users/search")) diff --git a/spiffworkflow-backend/tests/spiffworkflow_backend/unit/test_authorization_service.py b/spiffworkflow-backend/tests/spiffworkflow_backend/unit/test_authorization_service.py index dcc3ed9dd..3393c24bb 100644 --- a/spiffworkflow-backend/tests/spiffworkflow_backend/unit/test_authorization_service.py +++ b/spiffworkflow-backend/tests/spiffworkflow_backend/unit/test_authorization_service.py @@ -285,7 +285,7 @@ class TestAuthorizationService(BaseTest): ("/process-instances/reports/*", "update"), ("/process-models", "read"), ("/processes", "read"), - ("/processes/callers", "read"), + ("/processes/callers/*", "read"), ("/service-tasks", "read"), ("/tasks/*", "create"), ("/tasks/*", "delete"),