diff options
author | Øyvind Grønnesby <oyving@verizonmedia.com> | 2020-11-26 16:30:46 +0100 |
---|---|---|
committer | Øyvind Grønnesby <oyving@verizonmedia.com> | 2020-11-26 16:30:46 +0100 |
commit | 21b4c580cd116cd6cf336feec5ed02ab9e4ccf58 (patch) | |
tree | 4fd0b73a287fcdb6d3468318f90089226a403098 /controller-api/src/test | |
parent | c4e7e04c88782b7eac14ba48f8504c1748827045 (diff) |
Limit operator's access to the billing API
Diffstat (limited to 'controller-api/src/test')
-rw-r--r-- | controller-api/src/test/java/com/yahoo/vespa/hosted/controller/api/role/RoleTest.java | 28 |
1 files changed, 14 insertions, 14 deletions
diff --git a/controller-api/src/test/java/com/yahoo/vespa/hosted/controller/api/role/RoleTest.java b/controller-api/src/test/java/com/yahoo/vespa/hosted/controller/api/role/RoleTest.java index 1a24b5361dd..ab72098303f 100644 --- a/controller-api/src/test/java/com/yahoo/vespa/hosted/controller/api/role/RoleTest.java +++ b/controller-api/src/test/java/com/yahoo/vespa/hosted/controller/api/role/RoleTest.java @@ -201,7 +201,7 @@ public class RoleTest { tester.on("/billing/v1/tenant/t1/token") .assertAction(accountant) - .assertAction(operator, Action.create, Action.read, Action.update, Action.delete) + .assertAction(operator, Action.read) .assertAction(reader) .assertAction(developer) .assertAction(admin, Action.read) @@ -209,7 +209,7 @@ public class RoleTest { tester.on("/billing/v1/tenant/t1/instrument") .assertAction(accountant) - .assertAction(operator, Action.create, Action.read, Action.update, Action.delete) + .assertAction(operator, Action.read) .assertAction(reader, Action.read, Action.delete) .assertAction(developer, Action.read, Action.delete) .assertAction(admin, Action.read, Action.update, Action.delete) @@ -217,31 +217,31 @@ public class RoleTest { tester.on("/billing/v1/tenant/t1/instrument/i1") .assertAction(accountant) - .assertAction(operator, Action.create, Action.read, Action.update, Action.delete) - .assertAction(reader, Action.read, Action.delete) - .assertAction(developer, Action.read, Action.delete) - .assertAction(admin, Action.read, Action.update, Action.delete) + .assertAction(operator, Action.read) + .assertAction(reader, Action.read, Action.delete) + .assertAction(developer, Action.read, Action.delete) + .assertAction(admin, Action.read, Action.update, Action.delete) .assertAction(otherAdmin); tester.on("/billing/v1/tenant/t1/billing") .assertAction(accountant) - .assertAction(operator, Action.create, Action.read, Action.update, Action.delete) - .assertAction(reader, Action.read) - .assertAction(developer, Action.read) - .assertAction(admin, Action.read) + .assertAction(operator, Action.read) + .assertAction(reader, Action.read) + .assertAction(developer, Action.read) + .assertAction(admin, Action.read) .assertAction(otherAdmin); tester.on("/billing/v1/tenant/t1/plan") - .assertAction(accountant, Action.update) - .assertAction(operator, Action.create, Action.read, Action.update, Action.delete) + .assertAction(accountant, Action.update) + .assertAction(operator, Action.read) .assertAction(reader) .assertAction(developer) - .assertAction(admin, Action.update) + .assertAction(admin, Action.update) .assertAction(otherAdmin); tester.on("/billing/v1/tenant/t1/collection") .assertAction(accountant, Action.update) - .assertAction(operator, Action.create, Action.read, Action.update, Action.delete) + .assertAction(operator, Action.read) .assertAction(reader) .assertAction(developer) .assertAction(admin) |