Project

General

Profile

Actions

Bug #38523

closed

I can delete a public-read-write bucket which is belong to other user, is this right?

Added by liang sibin about 5 years ago. Updated about 5 years ago.

Status:
Resolved
Priority:
Normal
Assignee:
Target version:
% Done:

0%

Source:
Community (user)
Tags:
Backport:
luminous mimic
Regression:
No
Severity:
3 - minor
Reviewed:
Affected Versions:
ceph-qa-suite:
Pull request ID:
Crash signature (v1):
Crash signature (v2):

Description

I can delete a public-read-write bucket which is belong to other user,But the below table definition is can write or delete objects in the bucket.
So is this right?
Permission Bucket Object
READ Grantee can list the objects in the bucket. Grantee can read the object.
WRITE Grantee can write or delete objects in the bucket. N/A
READ_ACP Grantee can read bucket ACL. Grantee can read the object ACL.
WRITE_ACP Grantee can write bucket ACL. Grantee can write to the object ACL.
FULL_CONTROL Grantee has full permissions for object in the bucket. Grantee can read or write to the object ACL.


Related issues 2 (0 open2 closed)

Copied to rgw - Backport #38667: luminous: I can delete a public-read-write bucket which is belong to other user, is this right?ResolvedPrashant DActions
Copied to rgw - Backport #38668: mimic: I can delete a public-read-write bucket which is belong to other user, is this right?ResolvedPrashant DActions
Actions

Also available in: Atom PDF