Hi i have set permission on following ( Opendistro: 1.9 )
PUT _opendistro/_security/api/roles/user_demon
{
"cluster_permissions": [
"cluster_composite_ops",
"cluster:monitor/main",
"cluster:monitor/health",
"cluster:monitor/state",
"indices:data/read/scroll*",
"indices:admin/create"
],
"index_permissions": [{
"index_patterns": [
"user-test-logs*"
],
"dls": "",
"fls": [],
"masked_fields": [],
"allowed_actions": [
"indices_all",
"indices:data/read/search",
"indices:monitor/settings/get",
"indices:monitor/stats",
"indices:admin/template/get",
"indices:admin/create",
"indices:data/read/search"
]
}]
}
[2021-02-27T23:20:38,546][INFO ][c.a.o.s.p.PrivilegesEvaluator] [odfe-1.9_1] No permissions for [indices:admin/create]
[2021-02-27T23:20:38,582][INFO ][c.a.o.s.p.PrivilegesEvaluator] [odfe-1.9_1] No index-level perm match for User [name=user_demon, backend_roles=[user_demon], requestedTenant=null] Resolved [aliases=[], allIndices=[user-test-logs-2021.02], types=[*], originalRequested=[user-test-logs-2021.02], remoteIndices=[]] [Action [indices:admin/create]] [RolesChecked [speech_processing, user_demon, monitor_user, own_index]]
[2021-02-27T23:20:38,582][INFO ][c.a.o.s.p.PrivilegesEvaluator] [odfe-1.9_1] No permissions for [indices:admin/create]
[WARN ][c.a.o.s.c.PrivilegesInterceptorImpl] [odfe-1.9_1] Tenant global_tenant is not allowed for user user_demon
I wonder which step I’m missing for the permission.
Best Regards