mirror of
https://git.proxmox.com/git/pve-access-control
synced 2025-06-12 17:00:31 +00:00
api: check for special roles before locking the usercfg
This commit is contained in:
parent
0a6e09fd47
commit
e41cc73c52
@ -183,19 +183,18 @@ __PACKAGE__->register_method ({
|
||||
code => sub {
|
||||
my ($param) = @_;
|
||||
|
||||
my $role = $param->{roleid};
|
||||
|
||||
die "auto-generated role '$role' cannot be deleted\n"
|
||||
if PVE::AccessControl::role_is_special($role);
|
||||
|
||||
PVE::AccessControl::lock_user_config(
|
||||
sub {
|
||||
|
||||
my $role = $param->{roleid};
|
||||
|
||||
my $usercfg = cfs_read_file("user.cfg");
|
||||
|
||||
die "role '$role' does not exist\n"
|
||||
if !$usercfg->{roles}->{$role};
|
||||
|
||||
die "auto-generated role '$role' can not be deleted\n"
|
||||
if PVE::AccessControl::role_is_special($role);
|
||||
|
||||
delete ($usercfg->{roles}->{$role});
|
||||
|
||||
# fixme: delete role from acl?
|
||||
|
Loading…
Reference in New Issue
Block a user