diff --git a/x-pack/platform/plugins/shared/security/server/routes/session_management/invalidate.test.ts b/x-pack/platform/plugins/shared/security/server/routes/session_management/invalidate.test.ts index 12c31be12dd57..b7576fe839890 100644 --- a/x-pack/platform/plugins/shared/security/server/routes/session_management/invalidate.test.ts +++ b/x-pack/platform/plugins/shared/security/server/routes/session_management/invalidate.test.ts @@ -9,6 +9,7 @@ import type { ObjectType } from '@kbn/config-schema'; import type { RequestHandler, RouteConfig } from '@kbn/core/server'; import { kibanaResponseFactory } from '@kbn/core/server'; import { httpServerMock } from '@kbn/core/server/mocks'; +import { ReservedPrivilegesSet } from '@kbn/core-http-server'; import type { PublicMethodsOf } from '@kbn/utility-types'; import { defineInvalidateSessionsRoutes } from './invalidate'; @@ -48,7 +49,9 @@ describe('Invalidate sessions routes', () => { summary: 'Invalidate user sessions', }); - expect(routeConfig.security?.authz).toEqual({ requiredPrivileges: ['sessionManagement'] }); + expect(routeConfig.security?.authz).toEqual({ + requiredPrivileges: [ReservedPrivilegesSet.superuser], + }); const bodySchema = (routeConfig.validate as any).body as ObjectType; expect(() => bodySchema.validate({})).toThrowErrorMatchingInlineSnapshot( diff --git a/x-pack/platform/plugins/shared/security/server/routes/session_management/invalidate.ts b/x-pack/platform/plugins/shared/security/server/routes/session_management/invalidate.ts index bbc81c21706d9..50991b3fd20ce 100644 --- a/x-pack/platform/plugins/shared/security/server/routes/session_management/invalidate.ts +++ b/x-pack/platform/plugins/shared/security/server/routes/session_management/invalidate.ts @@ -6,6 +6,7 @@ */ import { schema } from '@kbn/config-schema'; +import { ReservedPrivilegesSet } from '@kbn/core-http-server'; import type { RouteDefinitionParams } from '..'; @@ -39,7 +40,7 @@ export function defineInvalidateSessionsRoutes({ }, security: { authz: { - requiredPrivileges: ['sessionManagement'], + requiredPrivileges: [ReservedPrivilegesSet.superuser], }, }, options: {