gravitino
gravitino copied to clipboard
[Bug report] Auth: a user having "manage_grants" privilege, but the user isn't allowed to get all roles
Version
main branch
Describe what's wrong
There're role1,role2 in metalake test. And role2 definition as following.
A user missy is granted role2 , she is supposed to have the access to the roles role1,role2.
But currently she failed to get role1
{
"code": 0,
"role": {
"name": "role2",
"audit": {
"creator": "anonymous",
"createTime": "2025-11-13T07:15:40.015212Z"
},
"properties": {
"k1": "v1"
},
"securableObjects": [
{
"type": "metalake",
"privileges": [
{
"name": "manage_grants",
"condition": "allow"
}
],
"fullName": "test"
}
]
}
}
Error message and/or stacktrace
N/A
How to reproduce
- Create
role1role2in metalake test. - Grant
role2bymanage_grantsprivileges. - Add a user
missy, then grantedrole2to she - Use
missyto getrole1
Additional context
No response