From 1305899060d4e734a81dfec54c566d5a563126f6 Mon Sep 17 00:00:00 2001 From: Yang Luo Date: Sat, 9 Sep 2023 15:44:36 +0800 Subject: [PATCH] Fix "app" user API denied issue --- authz/authz.go | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/authz/authz.go b/authz/authz.go index 750ba435..3a2ec5aa 100644 --- a/authz/authz.go +++ b/authz/authz.go @@ -121,6 +121,10 @@ func IsAllowed(subOwner string, subName string, method string, urlPath string, o panic(err) } + if subOwner == "app" { + return true + } + if user != nil && user.IsAdmin && (subOwner == objOwner || (objOwner == "admin")) { return true }