-
Notifications
You must be signed in to change notification settings - Fork 25k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Analyze and get templates index action privileges #47500
Comments
Pinging @elastic/es-security (:Security/Authorization) |
Possibly also related: #53110 |
any updates here? |
@kunisen No. If the issue is unassigned and has no recent comment or a link to a PR, then it is generally safe to assume that nothing has changed. |
👍 Also relates to elastic/kibana#36635 - it's hard to make a read-only Kibana user where autocomplete works properly in Kibana Dev Tools. The Kibana POST to `/api/console/proxy?path=_template&method=GET' results in a security exception and all autocomplete fails to operate:
|
The
indices:admin/analyze
andindices:admin/template/get
actions currently require themanage
index privilege.manage
is too broad and it would be more desirable that callers of these actions require a much more restricted privilege. Given the current structure, I suggest we move them underview_index_metadata
.For reference here are all the actions of an indices admin client:
Related #29998
The text was updated successfully, but these errors were encountered: