Menu

#4621 User ACL BIND module

1.760
closed-fixed
5
2015-07-02
2015-06-25
Jim Allen
No

Ubuntu 13.04
When defining ANY customization to a WEBMIN USER in the BIND module, within the BIND DNS Server access control options. The user gets the message "There are no DNS zones defined for this name server" It does not matter what option is changed from the default, this message is displayed. Essentially, once the "user.acl is created in the webmin/bind directory, they receive the message.
Selecting the RESET TO FULL ACCESS, which removes the "user.acl" from the webmin/bind directory, all of the zones are again displayed.
There is no problem seeing or manipulating the zones, until an ACL is attached to the BIND module for that user.
Permissions? Missing reference elsewhere in webmin?
Thank you in advance.

Related

Bugs: #4621

Discussion

  • André Fernandes

    I have also found this bug in CentOS 6 + webmin 1.760.

    Installed BIND 9.8.2rc1-RedHat-9.8.2-0.30.rc1.el6_6.3 with chroot. Zones are separated into "public" and "internal" views (see attached named.zones file).
    BIND DNS Server management works normally until I try to limit which views a user can see/edit.

    Steps to reproduce:

    1. set up the BIND DNS Server module to use the chroot'ed configuration paths
    2. create a webmin user with access to the BIND DNS Server module
    3. in the module permissions for the user, set permissions as follows:
      • Domains this user can edit -- Selected zones.. -- Zones in view <public></public>
      • Views this user can edit domains in -- selected views -- public
      • Views this user can edit and add zones to -- Selected views.. -- public
    4. login as user, see the "There are no DNS zones defined for this name server" message
    5. user can see only the <public> view in the "Existing Client Views" section</public>

    Other variants tried:
    - picking one or multiple zones in the permissions, rather than a "Zones in view" option works as expected
    - setting permissions do "all zones" or "all views" allows the user to see/edit the zones

     
  • Jamie Cameron

    Jamie Cameron - 2015-07-01

    André - for step 3, did you explicitly select a series of zones from the list?

     
  • André Fernandes

    I did try picking the zones explicitly, and they show up normally to the user, i.e. the filtering works on a per-zone basis.

     
  • Jamie Cameron

    Jamie Cameron - 2015-07-02

    Ok, I see the bug that causes this - it will be fixed in the next Webmin release.

     
  • Jamie Cameron

    Jamie Cameron - 2015-07-02
    • status: open --> closed-fixed
    • assigned_to: Jamie Cameron
     

Log in to post a comment.