Hi! I am having trouble setting up policies to all...
# troubleshoot
m
Hi! I am having trouble setting up policies to allow groupA to be able to access domainA. Globally, users are not able to see any of the data assets but when assigning a user to groupA and then setting up a policy to give them permission to access domainA I am still met with "unauthorized access". Any help is appreciated, thanks!
Would like to add that the user is able to view assets under the domain but not the domain folder itsself
a
What specific trouble are you having with policies? Have you followed the guide here? https://datahubproject.io/docs/authorization/access-policies-guide/#policy-types
m
Yes Paul I have followed that guide. The issue I am facing is the user assigned to the domain is able to view the assets under the domain but when trying to view the domain folder itself I am met with "unauthorized access"
a
Oh! That’s interesting- could you share your role/policy config here? You’re an admin right?
m
Hi Paul! Here's the policy config -- I do have admin privs Note that I have tried with leaving the Resource Type blank and with adding Dataset and Domains
Any insights would be much appreciated!
a
If you add the “edit domain” permission does that allow you to view the toplevel folder?
m
While adding that permission or giving all permissions the toplevel folder is still unauthorized
@astonishing-answer-96712
a
Ah ok! @big-carpet-38439 Any idea on why users with admin permissions might be “unauthorized” to view domains?