Project

General

Profile

Actions

Feature #25229

closed

Feature #47765: mgr/dashboard: security improvements

mgr/dashboard: Provide user enable/disable capability

Added by Paul Cuzner over 5 years ago. Updated about 3 years ago.

Status:
Closed
Priority:
Normal
Category:
Component - Users & Roles
Target version:
% Done:

100%

Source:
Tags:
dashboard
Backport:
Reviewed:
Affected Versions:
Pull request ID:

Description

By adding a user enable/disable feature, the dashboard supports temporarily revoking access to the management UI

This is useful in the following scenarios:
  • new users can have their accounts set up in advance and then enabled
  • users absent from work for a vacation can have their account disabled to prevent others using it

The admin account should be excluded from this feature.


Related issues 6 (0 open6 closed)

Related to Dashboard - Feature #40248: mgr/dashboard: As a user, I want to change my passwordClosedVolker Theile

Actions
Related to Dashboard - Feature #24655: mgr/dashboard: Enforce password change upon first loginClosedVolker Theile

Actions
Related to Dashboard - Feature #25232: mgr/dashboard: Support minimum password complexity rules ClosedElzbieta Dziomdziora

Actions
Related to Dashboard - Feature #40329: mgr/dashboard: It should be possible to set an expiration date for the user passwordClosedTatjana Dehler

Actions
Related to Dashboard - Feature #39999: mgr/dashboard: Prevent brute-force/dictionary attacks against existing local user accountsResolvedNizamudeen A

Actions
Copied to Dashboard - Backport #46837: nautilus: mgr/dashboard: user management improvements (password change, password complexity, ...)RejectedActions
Actions #1

Updated by Lenz Grimmer over 5 years ago

  • Subject changed from mgr/dashboard provide user enable/disable capability to mgr/dashboard: Provide user enable/disable capability
Actions #2

Updated by Lenz Grimmer over 5 years ago

  • Category changed from 132 to 150
Actions #3

Updated by Patrick Seidensal almost 5 years ago

  • Status changed from New to In Progress
  • Assignee set to Patrick Seidensal
Actions #4

Updated by Lenz Grimmer almost 5 years ago

  • Translation missing: en.field_tag_list set to security
  • Target version deleted (v14.0.0)
Actions #5

Updated by Lenz Grimmer almost 5 years ago

  • Description updated (diff)
Actions #6

Updated by Lenz Grimmer almost 5 years ago

  • Target version set to v15.0.0
Actions #7

Updated by Lenz Grimmer almost 5 years ago

  • Related to Feature #40248: mgr/dashboard: As a user, I want to change my password added
Actions #8

Updated by Lenz Grimmer almost 5 years ago

  • Related to Feature #24655: mgr/dashboard: Enforce password change upon first login added
Actions #9

Updated by Lenz Grimmer almost 5 years ago

  • Related to Feature #25232: mgr/dashboard: Support minimum password complexity rules added
Actions #10

Updated by Lenz Grimmer almost 5 years ago

  • Related to Feature #40329: mgr/dashboard: It should be possible to set an expiration date for the user password added
Actions #11

Updated by Lenz Grimmer almost 5 years ago

  • Related to Feature #39999: mgr/dashboard: Prevent brute-force/dictionary attacks against existing local user accounts added
Actions #12

Updated by Patrick Seidensal almost 5 years ago

  • Status changed from In Progress to Fix Under Review
  • Pull request ID set to 29046
Actions #13

Updated by Patrick Seidensal almost 5 years ago

  • % Done changed from 0 to 80
Actions #14

Updated by Patrick Seidensal almost 5 years ago

  • % Done changed from 80 to 90
Actions #15

Updated by Tiago Melo over 4 years ago

  • Status changed from Fix Under Review to Resolved
Actions #16

Updated by Patrick Seidensal over 4 years ago

  • % Done changed from 90 to 100
Actions #17

Updated by Ernesto Puerta over 3 years ago

  • Copied to Backport #46837: nautilus: mgr/dashboard: user management improvements (password change, password complexity, ...) added
Actions #18

Updated by Ernesto Puerta over 3 years ago

  • Status changed from Resolved to Pending Backport
  • Backport set to nautilus
Actions #19

Updated by Ernesto Puerta over 3 years ago

  • Status changed from Pending Backport to Closed
  • Backport deleted (nautilus)

For clean/safe backport it requires more than 11 additionall PRs

Closing.

Actions #20

Updated by Ernesto Puerta over 3 years ago

  • Parent task set to #47765
Actions #21

Updated by Ernesto Puerta about 3 years ago

  • Project changed from mgr to Dashboard
  • Category changed from 150 to Component - Users & Roles
Actions

Also available in: Atom PDF