CONTAP-309687: Cannot view or create S3 user with a different security login
Issue
- Unable to see S3 users via curl/rest api's
- security login rest-role show s3testuser
Role Access
Vserver Name API Level - ------------- ------------------- ------
svm01 s3testuser /api/cluster/jobs/ readonly
/api/protocols/s3/buckets
read_create_modify
/api/protocols/s3/services/
read_create_modify
"/api/protocols/s3/services/user-1user-1*\".",
"code": "92406096"
}
}
[kern_audit:info:svm01:http :: 192.168.0.61:36194 :: svm0:s3testuser :: POST /api/protocols/s3/services/d1a23a4f-ef56-78ef-bc9f-123456ae7af8/users : { "name": "user-1"} :: Error: The user does not have permission to access the requested resource "user-1".
- Unable to create S3 users when logging into system manager with a newly created user using a custom role:
- "The user does not have permission to access the requested resource "user-1."
- Creating or listing users in the CLI works
- Using the admin role or vsadmin (svm-scoped) role works as expected