2019-09-23 - Triage report for "group::access"

Hi, @jeremy @dennis @lmcandrew

This is a group or stage level triage package that aims to summarize the feature proposals and bugs which have not been scheduled or triaged. For more information please refer to the handbook:

  • https://about.gitlab.com/handbook/engineering/quality/triage-operations/index.html#triage-packages

Scheduling the workload is a collaborative effort by the Product Managers and Engineering Managers for that group. Please work together to provide a best estimate on priority and milestone assignments. For each issue please:

  • Determine if the issue should be closed if it is no longer relevant or a duplicate.
  • If it is still relevant please assign either a best estimate versioned milestone, the %Backlog or the %Awaiting further demand milestone.
  • Specifically for ~bug, if there is no priority or clarity on a versioned milestone, please add a Priority label. Priority labels have an estimate SLO attached to them and help team members and the wider community understand roughly when it will be considered to be scheduled.
    • https://docs.gitlab.com/ee/development/contributing/issue_workflow.html#priority-labels
  • Once a milestone has been assigned please check off the box for that issue.
  • Please work with your team to complete the list by the due date set.

Feature Proposal Section

For the following feature proposals. Please either close or assign either a versioned milestone, the %Backlog or the %Awaiting further demand milestone.

Unscheduled feature with customer

  • #32369 (closed) Investigate OneLogin SCIM setup customer, devopsmanage, feature, gitlab.com, ~"group::access", movingtogitlab, saml
  • #32274 SAML SSO for gitlab.com (Supporting SecureAuth Identity Provider) Enterprise Edition, customer, devopsmanage, ~"enhancement", feature, gitlab.com, ~"group::access", saml
  • #21862 Groups SSO SAML: Support for Duo Access Gateway customer, devopsmanage, feature, gitlab.com, ~"group::access", saml
  • #14729 (closed) Group Deploy Tokens/Keys Enterprise Edition, customer, devopsmanage, feature, ~"group::access", settings
  • #13705 Add a tooltip to the SSO Enforcement toggle switch Enterprise Edition, GitLab.com Priority, UX, customer, devopsmanage, ~"enhancement", feature, gitlab.com, ~"group::access", internal customer, saml
  • #31104 Allow for overriding the "Restricted visibility levels" at the group layer ~"S3", ~"bug", customer, devopsmanage, feature, ~"group::access", ~"groups", project creation
  • #13679 (closed) Add GET endpoint to LDAP group link API api, customer, devopsmanage, feature, ~"group::access", ~"groups", ldap
  • #30857 (closed) Audit logs for CI / CD variables Manage [DEPRECATED], ~"audit events", customer, devopsmanage, ~"enhancement", feature, ~"group::access"
  • #30409 (closed) Allow Terms of Service to link to public repository on same GitLab Instance Manage [DEPRECATED], ~"P4", ~"S4", customer, devopsmanage, feature, ~"group::access"
  • #30343 (closed) Disable option to upload ssh keys by users in their profile Manage [DEPRECATED], customer, devopsmanage, feature, ~"group::access", ~"user management", user profile
  • #12975 (closed) The field "Enter new password" in Service Templates pages should show asterisks in the password field Enterprise Edition, Manage [DEPRECATED], UX, customer, devopsmanage, feature, frontend, ~"group::access", settings
  • #30219 Configure session timeouts with Okta SSO customer, devopsmanage, feature, ~"group::access"
  • #30094 (closed) Get list of runners associated with specific group Manage [DEPRECATED], api, customer, customer+, devopsmanage, feature, ~"group::access", ~"groups"
  • #29842 Create Alert/Notification When Username is Modified (LDAP Integration) customer, devopsmanage, feature, ~"group::access"
  • #12251 Add GitLab into the Azure Active Directory application gallery for wider SSO support Enterprise Edition, Manage [DEPRECATED], authentication, customer, devopsmanage, ~"enhancement", feature, gitlab.com, ~"group::access", saml, scim

Unscheduled feature (non-customer)

  • #32261 Don't lock out accounts with 2FA on too many attempts 2FA, devopsmanage, feature, ~"group::access"
  • #32062 (closed) Allow rekeying TOTP without disabling U2F 2FA, devopsmanage, feature, ~"group::access"
  • #32028 (closed) Group projects list should remember user's latest sort by setting, just like dashboard projects list devopsmanage, feature, ~"group::access", settings
  • #31911 (closed) feature: enhance projects API api, devopsmanage, feature, ~"group::access", project
  • #31881 (closed) Sort "Existing members and groups" of project alphabetically devopsmanage, feature, ~"group::access", ~"user management"
  • #14931 GitLab Escrow Functionality... devopsmanage, feature, ~"group::access"
  • #31690 (closed) Allow users with flag "external" access specific projects which are flagged "internal" devopsmanage, feature, ~"group::access"
  • #31653 Allowed domain restriction to sub-groups devopsmanage, feature, ~"group::access", subgroups
  • #31619 Scoped API OAuth and Access Token Authorization devopsmanage, feature, ~"group::access"
  • #31595 (confidential) ~"(confidential)"
  • #31511 (closed) Follow-up !16981 (merged): disable auto admin mode in specs and fix failing specs Community contribution, admin dashboard, devopsmanage, feature, ~"group::access"
  • #31331 (closed) Option to filter add member autocomplete for private repositories devopscreate, feature, ~"group::access"
  • #31326 (closed) Force admin users to set a password when using user mode in session feature Delivery, devopsmanage, feature, ~"group::access"
  • #31325 (closed) Extend time to insert U2F on login 2FA, Delivery, devopsmanage, feature, ~"group::access"
  • #31259 (closed) Add ability to limit Broadcast Messages to a project or group devopsmanage, feature, ~"group::access"

Bug Section

For the following bugs. Please either close or assign either a versioned milestone, the %Backlog or the %Awaiting further demand milestone and ensure that a priority label is set.

Heatmap for all bugs

Bugs for their priority and severity label are counted here. Every bug should have severity and priority labels applied. Please take a look at the bugs which fall into the columns indicating that the priority or severity labels are currently missing.

~S1 ~S2 ~S3 ~S4 ~"No severity"
~P1 0 0 0 0 0
~P2 1 9 3 0 0
~P3 0 9 78 14 2
~P4 0 2 61 43 0
~"No priority" 0 8 29 31 109

Unscheduled frontend ~bug with customer

  • #29126 (closed) Enabled OAuth sign-in sources has confusing UI for disabling / enabling Omniauth providers Manage [DEPRECATED], UX, ~"bug", customer, devopsmanage, frontend, ~"group::access"
  • #26647 (closed) Failing to transfer a group causes UI expand buttons to lock Manage [DEPRECATED], ~"P3", ~"S3", ~"bug", customer, devopsmanage, frontend, ~"group::access", subgroups
  • #20414 (closed) Admin Users not sorted by "name" as highlighted Manage [DEPRECATED], ~"P3", ~"Platform [DEPRECATED]", ~"S3", UX, admin dashboard, ~"bug", customer, default-priority, default-severity, devopsmanage, frontend, ~"group::access", ~"user management"

Unscheduled frontend ~bug (non-customer)

  • #30561 (closed) Avatar/profile picture position of assignee on issue creation Manage [DEPRECATED], ~"S4", ~"bug", devopsmanage, frontend, ~"group::access"
  • #13011 (closed) Typo in Gitlab tutorial, Merge Requests Enterprise Edition, Manage [DEPRECATED], UX, ~"bug", devopsmanage, frontend, ~"group::access"
  • #30205 (closed) Layout width description has two percent symbols ~"S4", ~"bug", devopsmanage, frontend, ~"group::access"
  • #30169 (closed) Avatar consistency Manage [DEPRECATED], ~"S4", UI polish, ~"bug", devopsmanage, frontend, ~"group::access"
  • #30090 (closed) Description in Group's projects list is overflown Manage [DEPRECATED], ~"S4", UX, ~"bug", devopsmanage, frontend, ~"group::access"
  • #29993 (closed) Edit status modal displays all empty states at once Manage [DEPRECATED], ~"bug", devopsmanage, frontend, ~"group::access", regression, regression:12.1, reproduced on GitLab.com, user profile
  • #12640 (closed) Externalized string using namespaces in new user form in admin area is missing required prefix Enterprise Edition, Manage [DEPRECATED], UI polish, ~"bug", devopsmanage, frontend, ~"group::access"
  • #29564 (closed) Showing horizontal scroll bar in private profile Manage [DEPRECATED], ~"bug", devopsmanage, frontend, ~"group::access", reproduced on GitLab.com, user profile
  • #29511 (closed) On new project, modifying project name field updates project slug even if slug is customized Manage [DEPRECATED], UX, ~"bug", devopsmanage, frontend, ~"group::access", project, reproduced on GitLab.com, settings
  • #29371 (closed) Group icon missing on small viewports on profile page Manage [DEPRECATED], ~"S4", UX, ~"bug", devopsmanage, frontend, ~"group::access", user profile
  • #29187 (closed) Filter by author is not working when you change a search or sorting filter in Todos Manage [DEPRECATED], UX, ~"bug", devopsmanage, frontend, ~"group::access", todos
  • #28934 (closed) Smiley as first char in group name breaks group icon Manage [DEPRECATED], UX, ~"bug", devopsmanage, frontend, ~"group::access", ~"groups"
  • #28884 (closed) Large Branch name breaks UI in the settings page Manage [DEPRECATED], ~"S4", UI polish, ~"bug", devopsmanage, frontend, ~"group::access"
  • #28875 (closed) Project Icons are not displaying for some projects in explore page Manage [DEPRECATED], awaiting feedback, ~"bug", devopsmanage, frontend, ~"group::access"
  • #28874 (closed) Long Branch name breaks profile page activity design Manage [DEPRECATED], ~"S4", UI polish, ~"bug", devopsmanage, frontend, ~"group::access"

Unscheduled ~bug with customer

  • #32346 Group still visible even with IP restriction ~"P2", ~"S1", ~"bug", customer, devopsmanage, ~"group::access"
  • #14731 (closed) Auditor users cannot access public and internal projects when files access is limited to project members ~"bug", customer, devopsmanage, ~"group::access"
  • #31104 Allow for overriding the "Restricted visibility levels" at the group layer ~"S3", ~"bug", customer, devopsmanage, feature, ~"group::access", ~"groups", project creation
  • #30369 (closed) 500 Internal Server Error: GET https://gitlab.com/api/v4/groups/group_id Manage [DEPRECATED], api, ~"bug", customer, devopsmanage, ~"group::access"
  • #30278 (closed) Unblocked users cannot see group projects added while they are blocked ~"S4", ~"bug", customer, devopsmanage, ~"group::access"
  • #12856 Membership requests are taken into account for access level validation Enterprise Edition, Manage [DEPRECATED], ~"S3", ~"bug", customer, devopsmanage, ~"group::access", ldap
  • #12178 (closed) Omniauth 500 when blocking new users Enterprise Edition, Manage [DEPRECATED], authentication, ~"bug", customer, devopsmanage, ~"group::access", oauth, saml
  • #29447 (closed) ActiveRecord::StatementInvalid: PG::QueryCanceled: ERROR: canceling statement due to statement timeout Manage [DEPRECATED], ~"bug", customer, devopsmanage, ~"group::access", reproduced on GitLab.com
  • #11444 Users with developer access cannot access custom group-level project templates Enterprise Edition, Manage [DEPRECATED], ~"bug", customer, devopsmanage, ~"group::access"
  • #11320 (closed) 500 Internal Server Error ActionView::Template::Error PG::NotNullViolation: ERROR Enterprise Edition, Manage [DEPRECATED], ~"S2", ~"bug", customer, database, devopsmanage, ~"group::access", personal access tokens
  • #11288 Subgroup Contribution Analytics only showing direct members Enterprise Edition, Manage [DEPRECATED], analytics, ~"bug", customer, devopsmanage, ~"group::access", subgroups
  • #26682 (confidential) ~"(confidential)"
  • #26212 (closed) Group owner role do not override project role if it was created after Manage [DEPRECATED], ~"bug", customer, devopsmanage, ~"group::access", permissions, project
  • #25421 (closed) 422 error when trying to view group CI/CD settings page Manage [DEPRECATED], ~"P4", ~"S3", ~"bug", customer, devopsmanage, ~"group::access", ~"groups"
  • #24956 (closed) With SAML + LDAP error occurs if LDAP does not have an email address value Manage [DEPRECATED], ~"P3", ~"S3", ~"bug", customer, devopsmanage, ~"group::access", ldap

Unscheduled ~bug (non-customer)

  • #32371 (closed) Cannot delete user with unicode name ~"S2", ~"bug", devopsmanage, ~"group::access", ~"user management"
  • #32321 (confidential) ~"(confidential)"
  • #32176 (closed) Cannot restore backup in docker container ~"backup-restore", ~"bug", devopsmanage, ~"group::access", needs investigation
  • #32025 (closed) Display wrong user access role ~"S4", ~"bug", devopsmanage, ~"group::access", project, ~"user management"
  • #31896 (closed) RSS feed dependent on user's latest activity view, which is confusing, unexpected, indeterministic ~"S4", backend, ~"bug", devopsmanage, ~"group::access"
  • #31878 (confidential) ~"(confidential)"
  • #31876 Sub-groups' members don't inherit access to Parent group's projects ~"bug", devopsmanage, ~"group::access", ~"groups", permissions
  • #31841 OAuth link 404s if clicked before page load completes ~"bug", ~"devops", devopsmanage, ~"group::access", oauth
  • #31764 (closed) "Configure it later" button for 2FA not visible during grace period 2FA, ~"S2", ~"bug", devopsmanage, ~"group::access"
  • #31760 (moved) Security upgrades not marked as such in yum packages. ~"S4", ~"bug", devopsmanage, ~"group::access"
  • #14756 (closed) Audit log missing true when LFS disabled on group. ~"S4", ~"audit events", ~"bug", devopsmanage, ~"group::access"
  • #31597 (confidential) ~"(confidential)"
  • #14730 (closed) Unrelated events logged on Group member lock enabled ~"S3", ~"audit events", ~"bug", devopsmanage, ~"group::access"
  • #31534 (closed) user_filter keyword is not working in gitlab ldap EE edition ~"S4", ~"bug", devopsmanage, ~"group::access", ldap
  • #14696 Missing group audit log when project is added to existing group ~"S3", ~"audit events", ~"bug", devopsmanage, ~"group::access"

Heatmap for ~missed-SLO bugs

~S1 ~S2 ~S3 ~S4
~P1 0 0 0 0
~P2 0 6 2 0
~P3 0 0 0 0
~P4 0 0 0 0


This is a group level triage package that aims to collate the latest bug reports (for frontend and otherwise) and feature proposals. For more information please refer to the handbook:

  • https://about.gitlab.com/handbook/engineering/quality/triage-operations/index.html#triage-packages
Assignee Loading
Time tracking Loading