Inconsistent role mapping with SAML

XMLWordPrintable

    • Type: Problem report
    • Resolution: Cannot Reproduce
    • Priority: Critical
    • None
    • Affects Version/s: 6.4.8, 7.0.0alpha8
    • Component/s: Frontend (F)
    • Environment:
      Ubuntu 20.04, Zabbix 6.4.7 with PostgreSQL
    • Prev.Sprint

      Steps to reproduce: 

      • Create a user that's part of 2 separate Entra AD groups
      • Create 2 mappings that give 2 different user roles to those 2 separate AD groups (roles are different level of access)

      Result:

      Sometimes users get assigned a role that has less permissions than necessary. I have yet to find out the logic behind which user role will be the "final". The user gets all Zabbix group memberships correctly.

      Expected:

      Users get assigned the highest role among mappings.

        1. usergroupoperation.png
          21 kB
          Bartosz Kruszewski
        2. image-2024-06-26-10-51-29-750.png
          68 kB
          Gabor T
        3. image-2024-08-13-16-11-59-200.png
          115 kB
          Ulli Weichert

            Assignee:
            Edgar Akhmetshin
            Reporter:
            Gabor T
            Votes:
            8 Vote for this issue
            Watchers:
            11 Start watching this issue

              Created:
              Updated:
              Resolved:

                Estimated:
                Original Estimate - Not Specified
                Not Specified
                Remaining:
                Remaining Estimate - Not Specified
                Not Specified
                Logged:
                Time Spent - 35h
                35h