You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Fix amIAdmin function to correctly check admin group membership
The amIAdmin function had a logic bug where it was checking if a single
group name existed in the user's group list, rather than checking if any
of the user's groups matched the allowed admin groups. This caused the
webhook to incorrectly deny requests from users in the cluster-admins group.
This fixes the e2e test failures in openshift/origin endpoint admission tests
where the admin client was being denied access to privileged namespaces.
OCPBUGS-62642
0 commit comments