Note: This is a beta release of Red Hat Bugzilla 5.0. The data contained within is a snapshot of the live data so any changes you make will not be reflected in the production Bugzilla. Also email is disabled so feel free to test any aspect of the site that you want. File any problems you find or give feedback here.

Bug 1513374

Summary: Unable to configure web console access for new users
Product: OpenShift Container Platform Reporter: mmariyan
Component: AuthAssignee: Simo Sorce <ssorce>
Status: CLOSED INSUFFICIENT_DATA QA Contact: Chuan Yu <chuyu>
Severity: medium Docs Contact:
Priority: medium    
Version: 3.5.1CC: aos-bugs, mkhan, mmariyan
Target Milestone: ---   
Target Release: 3.8.0   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard:
Fixed In Version: Doc Type: If docs needed, set a value
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2017-12-15 04:04:48 UTC Type: Bug
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Attachments:
Description Flags
login error message screenshot none

Description mmariyan 2017-11-15 10:10:51 UTC
Created attachment 1352495 [details]
login error message screenshot

Description of problem:

I recently created a few new accounts for access to Openshift and I also created a new a new project which should be the only project that the new users can access. I have configured the new accounts as administrators for the new project and the users can connect to Openshift and accesses their project via the CLI but they are unable to login vi the web console. I would like to make sure that they have access to login via the web console to administer their project.



Version-Release number of selected component (if applicable):


How reproducible:


Steps to Reproduce:
1.
2.
3.

Actual results:
 login failed with error message invalid login or password. please try again. (screenshot attached)

Expected results:

 should login without any problem

Additional info:

Issue with only new users.

Comment 1 Mo 2017-11-16 03:52:10 UTC
Please provide the output of the following commands:



oc get group -o yaml

oc get user -o yaml

oc get identity -o yaml

for name in $(oc get identity -o jsonpath='{.items[*].metadata.name}'); do oc get useridentitymapping ${name} -o yaml; echo; done

oc get oauthclient -o yaml

oc get oauthclientauthorization -o yaml



Also, the most recent master logs are incomplete - they contain no logs for POST /login   Please have the customer recapture these logs (at loglevel 6+) and make sure they contain this information.