Guest

Preview Tool

Cisco Bug: CSCtc38587 - User without "modify devices" privileges can edit configuration

Last Modified

Nov 10, 2016

Products (1)

  • Cisco Security Manager

Known Affected Releases

3.2(2)

Description (partial)

Symptom:
User without privileges can access CSM and modify configuration although configuration may not complete.

Errors on the logs show:
[ERROR] ,(ContextSettingPersister.java:553),updatePolicies
    caught an vms exception: Device Not
    Authorized,com.cisco.nm.vms.platform.persistors.ContextSettingPersister,TP-Processor1
Conditions:
User logging into CSM will not be authorized to modify config.
CSM working in Workflow mode with no Activity or Deployment Approval required.
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.