mirror of
https://github.com/minio/minio.git
synced 2026-02-04 18:00:15 -05:00
fix: AccountInfo API for LDAP users (#11874)
Also, ensure admin APIs auth additionally validates groups
This commit is contained in:
committed by
GitHub
parent
d23485e571
commit
8adfeb0d84
@@ -162,6 +162,7 @@ func checkAdminRequestAuth(ctx context.Context, r *http.Request, action iampolic
|
||||
}
|
||||
if globalIAMSys.IsAllowed(iampolicy.Args{
|
||||
AccountName: cred.AccessKey,
|
||||
Groups: cred.Groups,
|
||||
Action: iampolicy.Action(action),
|
||||
ConditionValues: getConditionValues(r, "", cred.AccessKey, claims),
|
||||
IsOwner: owner,
|
||||
|
||||
Reference in New Issue
Block a user