ACL permission inheritance from host object

ACL permission inheritance from host object

avatar

Are Host entries intended to act as permission inheritance parents for subentries (SSH, RDP, Website, etc.), or do subentries inherit permissions only from folders/vaults?
In our testing, a subentry displays permissions as "Inherited" from its Host, but a user who has View/Connect permissions granted only on the Host still cannot see or access the subentry. Is this expected behavior or a bug?

All Comments (1)

avatar

Hi,

Thank you for the detailed report.

To make sure we investigate this correctly, could you walk us through your setup in a bit more detail, ideally with screenshots?

Specifically, it would help to see:

  • How the subentry (SSH, RDP, Website) relates to the Host, for example, is it configured as a sub-connection within the Host entry itself (such as VPN/Tunnel/Gateway/Jump under that Host), or is it a separate entry that references the Host through host linking/templates?
  • The Permissions panel (Security → Permissions) for both the Host and the subentry, along with which permission(s) you granted on the Host (View, Connect, or both) and to which user or user group.


It would also help to know:

  • Your current Devolutions Server (DVLS) version
  • Your current Remote Desktop Manager (RDM) version, if you're connecting through the RDM client


Once we have these details, we'll be able to confirm whether this is expected behavior or something we need to look into further.

Best regards,

Alexis Geller Peiro