Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

source

function

target

result

user A

can SU

user B

true/false

Panel
titleDefinitions: Types of users

Priv User = users that are added to a role in the 'SU Realm' which has the 'Can SU' security function
Standard User =

  1. ) any user that is not SuperUser and has not been added to a role in the 'SU Realm' which has the 'Can SU' security function, or
  2. ) any user that is not SuperUser and has been added to a role in the 'SU Realm' which does not have the 'Can SU' security functionSuperUser = any user that has a 'magical' name or ability to edit the admin home site.

What is expected:

test

source

function

target

result

Test #

SuperUser

can SU

SuperUser

false

 

test 3

SuperUser

can SU

Priv User

true

 

 

SuperUser

can SU

Standard User

true

 

 

Standard User

can SU

SuperUser

false

 

test 5

Standard User

can SU

Priv User

false

 

 

Standard User

can SU

Stardard User

false

 

test 4

Priv User

can SU

SuperUser

false

 

test 6a

Priv User

can SU

Standard User

true

 

test 6b

Priv User

can SU

Priv User

true

 

 

...

Expected result: '!su.can_su_realm' will be created if missing the first time the tool is opened by a Standard User.

Test 3 - Validate SuperUser cannot SU another SuperUser

Login as admin and select the tool page test site that contains the SU Tool.
type Type in the name of another SuperAccount SuperUser and select 'become user'.

Expected result: 'unauthorized' - SuperUsers cannot su a SuperUser account

...