Uploaded image for project: 'OpenShift Request For Enhancement'
  1. OpenShift Request For Enhancement
  2. RFE-4330

Superusers can change API token ownership

XMLWordPrintable

    • Icon: Feature Request Feature Request
    • Resolution: Done
    • Icon: Critical Critical
    • None
    • None
    • Quay
    • False
    • None
    • False
    • Not Selected
    • x86_64
    • 0
    • 0% 0%

      Right now, only Organization owners can create OAuth tokens, and the tokens are created on behalf of the user who has created. The problem is that when the token is created for and used by some organization member, the action is logged to the token creator. In restricted environments, where only dedicated registry administrators are organization owners, this is undesirable due to inaccurate auditing.

      There should be an option to assign the OAuth token to a specific user, meaning that the actions performed by this token will be logged to this user, and the user will be accountant of this token. 

            DanielMesser Daniel Messer
            rhn-support-rauferna Raul Fernandez
            Votes:
            0 Vote for this issue
            Watchers:
            5 Start watching this issue

              Created:
              Updated:
              Resolved: