KB90739
Published: May 22, 2024
Revision: 2.0

User with Node-RED Dashboard UI permission prevents other users from making requests to PAC Control REST APIs


Applies To:

Firmware for the following groov EPICs:

  • GRV-EPIC-PR1
  • GRV-EPIC-PR2

Versions Affected:

3.3.0 to 3.5.1

Resolved In Version:

3.6.0


Symptoms:

You may experience this issue if you see the following message while using the PAC Control REST API:

"PAC response error: -401. Unable to authorize transaction. User data temporarily unavailable. ERROR CODE: -401"

This message can be caused by an invalid API key; however, it can also be caused by having any users with the Node-RED Dashboard UI permission on your groov EPIC processor. To determine if you are experiencing this issue, check the PAC Control REST API logs for an error message similar to this one:

ERROR [2023-08-30 17:32:37,215] [main] com.opto22.nxtio.api.rest.pac.controller.security.PermissionManager: Failed to initialize user cache for permissions. ! java.lang.IllegalArgumentException: No enum constant com.opto22.nxtio.api.rest.auth.model.permission.NodeRedPermission.DASHBOARD

Workaround:

For any user assigned the Node-RED Dashboard UI permission, do one of the following:

  • Increase the permission level to Node-RED Editor.
  • Decrease the permission level to None.
  • Delete the user.

Resolution:

Opto 22 has resolved this issue.

Questions?

Contact: Opto 22 Product Support.
Phone: 800-835-6786 or 951-695-3080
Email: support@opto22.com


DISCLAIMER

This Opto 22 Knowledge Base ('OptoKB') article is intended to provide general technical information on a particular subject or subjects and is not an exhaustive treatment of such subjects. Accordingly, the information in this OptoKB article is not intended to constitute application, design, software, or other professional engineering advice or services. Opto 22 may modify the OptoKB articles at any time. Before making any decision or taking any action which might affect your equipment, you should consult a qualified professional.

OPTO 22 DOES NOT WARRANT THE COMPLETENESS, TIMELINESS, OR ACCURACY OF THE DATA CONTAINED IN THIS OPTOKB ARTICLE AND MAY MAKE CHANGES THERETO AT ANY TIME AT ITS SOLE DISCRETION WITHOUT NOTICE. FURTHER, ALL INFORMATION CONVEYED HEREBY IS PROVIDED TO USERS 'AS IS.' IN NO EVENT SHALL OPTO 22 BE LIABLE FOR ANY DAMAGES OF ANY KIND INCLUDING DIRECT, INDIRECT INCIDENTAL, CONSEQUENTIAL, LOSS PROFIT, OR DAMAGE, EVEN IF OPTO 22 HAS BEEN ADVISED ON THE POSSIBILITY OF SUCH DAMAGES.

OPTO 22 DISCLAIMS ALL WARRANTIES WHETHER EXPRESSED OR IMPLIED WITH RESPECT TO THE INFORMATION (INCLUDING HARDWARE, SOFTWARE, AND/OR FIRMWARE) PROVIDED HEREBY, INCLUDING THE IMPLIED WARRANTIES OF FITNESS FOR A PARTICULAR PURPOSE, MERCHANTIBILITY, AND NON-INFRINGEMENT. Note that certain jurisdictions do not sanction the exclusion of implied warranties: thus, this disclaimer may not apply to you.

Copyright © 2024 Opto 22. All rights reserved.