Uploaded image for project: 'Magnolia GraphQL'
  1. Magnolia GraphQL
  2. MGNLGQL-164

GraphQL in 6.3: Cannot access GraphQL app and GraphQL API

XMLWordPrintable

    • Yes
    • Yes

      With "superuser" account users cannot access GraphQL app or GraphQL API.

      Steps to reproduce:
      1. Run dx-core webapp and login with "superuser" account
      2. Access GraphQL app or call GraphQL API

       

      Actual result:
      GraphQL app: The user is redirected to the login page

      GraphQL API: The user gets 403 response status code

       

      Expected result: 
      The user should be able to access both GraphQL app and GraphQL API

      Workaround:
      1. Grant web access permission "/.*" in Security app to superuser

      2. Another way is that we can create a new user account with superuser role and then use the user to access GraphQL

      Note:

      The issue is that "superuser" account does not have permission to access "./*" url pattern.

      See logs below:

       

        Acceptance criteria

          1. image-2023-09-08-10-40-05-775.png
            21 kB
            Anh Vu
          2. image-2023-09-08-10-42-12-464.png
            297 kB
            Anh Vu
          3. image-2023-09-08-10-43-09-872.png
            361 kB
            Anh Vu
          4. image-2023-09-08-10-44-29-502.png
            178 kB
            Anh Vu
          5. image-2023-09-08-10-56-38-837.png
            75 kB
            Anh Vu
          6. image-2023-09-08-10-56-50-419.png
            75 kB
            Anh Vu

              thien.quach Quach Hao Thien
              anh.vu Anh Vu
              DeveloperX
              Votes:
              0 Vote for this issue
              Watchers:
              3 Start watching this issue

                Created:
                Updated:
                Resolved:
                Work Started:

                  Estimated:
                  Original Estimate - Not Specified
                  Not Specified
                  Remaining:
                  Remaining Estimate - Not Specified
                  Not Specified
                  Logged:
                  Time Spent - 1.75d
                  1.75d