-
Bug
-
Resolution: Done
-
Critical
-
quay-v3.8.0
Description:
This is an issue of Quay 3.8.0 new feature "superuser full access", when enabled flag "FEATURE_SUPERUSERS_FULL_ACCESS: true", superuser can create and delete the proxy cache under normal user's organization, as the requirement is "any superuser action on tenant content can be audited", but this operation can't be audited under the logs of normal user's usage logs, pls review this issue.
Quay Image: quay-operator-bundle-container-v3.8.0-114
Create/Delete proxy cache by superuser can't be audited:
The usage logs of normal user's organization:
- links to
- mentioned on