summaryrefslogtreecommitdiffstats
path: root/controller-server
diff options
context:
space:
mode:
authorJon Marius Venstad <jvenstad@yahoo-inc.com>2019-03-26 11:35:01 +0100
committerJon Marius Venstad <jvenstad@yahoo-inc.com>2019-03-26 11:35:01 +0100
commit85e3f4a8e870d8c91ea4b69ed67f8f656bb3b56e (patch)
treeb69c75f3adb759c85d7dcba92ca2418e5de2eee7 /controller-server
parent6d73b7fd9256b10fd54f8567f90e8dd91a1cccae (diff)
Remove unnecessary declaration of tenant read privileges
Diffstat (limited to 'controller-server')
-rw-r--r--controller-server/src/main/java/com/yahoo/vespa/hosted/controller/role/Policy.java5
1 files changed, 1 insertions, 4 deletions
diff --git a/controller-server/src/main/java/com/yahoo/vespa/hosted/controller/role/Policy.java b/controller-server/src/main/java/com/yahoo/vespa/hosted/controller/role/Policy.java
index 86765a7a4f1..05c9871dd66 100644
--- a/controller-server/src/main/java/com/yahoo/vespa/hosted/controller/role/Policy.java
+++ b/controller-server/src/main/java/com/yahoo/vespa/hosted/controller/role/Policy.java
@@ -23,10 +23,7 @@ public enum Policy {
*/
tenant(Privilege.grant(Action.all())
.on(PathGroup.tenant)
- .in(SystemName.all()),
- Privilege.grant(Action.read)
- .on(PathGroup.all())
- .in(SystemName.main, SystemName.cd, SystemName.dev)),
+ .in(SystemName.all())),
/** Build service policy only allows access relevant for build service(s) */
buildService(Privilege.grant(Action.all())